CVE-2022-29270: Medium severity nagios xi vulnerability
Published Jun 29, 2022
·Updated
In Nagios XI through 5.8.5, it is possible for a user without password verification to change his e-mail address.
Affected Software
1 affected component
Nagios Nagios XI<=5.8.5
Event History
Jun 29, 2022
CVE Published
via MITRE·12:58 AM
Data Sourced
via MITRE·12:58 AM
Description
Frequently Asked Questions
1
What is CVE-2022-29270?
CVE-2022-29270 is a vulnerability in Nagios XI through 5.8.5 that allows a user without password verification to change their e-mail address.
2
How severe is CVE-2022-29270?
CVE-2022-29270 has a severity rating of 4.3 (medium).
3
What is the affected software of CVE-2022-29270?
CVE-2022-29270 affects Nagios XI versions up to and including 5.8.5.
4
How can I fix CVE-2022-29270?
To fix CVE-2022-29270, upgrade Nagios XI to a version beyond 5.8.5.
5
Where can I find more information about CVE-2022-29270?
You can find more information about CVE-2022-29270 at the following references: [Link 1] [Link 2] [Link 3]