First published: Mon Feb 26 2024(Updated: )
SQL Injection vulnerability in Nagios XI 2024R1.01 allows a remote attacker to execute arbitrary code via a crafted payload to the monitoringwizard.php component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nagios |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-24401 has been classified as a high-severity SQL Injection vulnerability.
To fix CVE-2024-24401, update Nagios XI to the latest version from the official vendor.
CVE-2024-24401 allows remote attackers to execute arbitrary code through crafted SQL injection payloads.
CVE-2024-24401 is present in the monitoringwizard.php component of Nagios XI.
Users of Nagios XI version 2024R1.01 are affected by CVE-2024-24401.