CVE-2021-37350: SQL Injection
Published Aug 13, 2021
·Updated
Nagios XI before version 5.8.5 is vulnerable to SQL injection vulnerability in Bulk Modifications Tool due to improper input sanitisation.
Affected Software
1 affected component
Nagios Nagios XI<5.8.5
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Nagios XIto a version that resolves this vulnerability.Fixed in 5.8.5
Event History
Aug 13, 2021
CVE Published
via MITRE·11:30 AM
Data Sourced
via MITRE·11:30 AM
Description
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this Nagios XI vulnerability?
The vulnerability ID for this Nagios XI vulnerability is CVE-2021-37350.
2
What is the title of the Nagios XI vulnerability?
The title of the Nagios XI vulnerability is 'Nagios XI before version 5.8.5 is vulnerable to SQL injection vulnerability in Bulk Modifications Tool.'
3
What is the severity of CVE-2021-37350?
The severity of CVE-2021-37350 is critical.
4
What is the affected software version for CVE-2021-37350?
The affected software version for CVE-2021-37350 is Nagios XI before version 5.8.5.
5
How can I fix the SQL injection vulnerability in Nagios XI?
To fix the SQL injection vulnerability in Nagios XI, you should update to version 5.8.5 or later.