CVE-2023-48085: Code Injection
Published Dec 14, 2023
·Updated
Nagios XI before version 5.11.3 was discovered to contain a remote code execution (RCE) vulnerability via the component commandtest.php.
Affected Software
1 affected component
Nagios Nagios XI<5.11.3
Event History
Dec 14, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-48085?
CVE-2023-48085 is classified as a high-severity vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2023-48085?
To fix CVE-2023-48085, upgrade Nagios XI to version 5.11.3 or later.
3
What components are affected by CVE-2023-48085?
CVE-2023-48085 affects the command_test.php component of Nagios XI.
4
Can CVE-2023-48085 be exploited remotely?
Yes, CVE-2023-48085 can be exploited remotely, allowing attackers to execute arbitrary code.
5
What versions of Nagios XI are vulnerable to CVE-2023-48085?
Nagios XI versions prior to 5.11.3 are vulnerable to CVE-2023-48085.