CVE-2024-33775: Critical severity nagios vulnerability
Published May 1, 2024
·Updated
An issue with the Autodiscover component in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted Dashlet.
Affected Software
2 affected components
Nagios XI
Nagios Nagios XI=2024-r1.0.1
Event History
May 1, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-33775?
CVE-2024-33775 is a critical vulnerability that allows remote privilege escalation in Nagios XI.
2
How can I mitigate CVE-2024-33775?
To mitigate CVE-2024-33775, upgrade to the latest version of Nagios XI where the vulnerability has been patched.
3
Who is affected by CVE-2024-33775?
CVE-2024-33775 affects users of Nagios XI version 2024R1.01 and earlier.
4
What type of attack is facilitated by CVE-2024-33775?
CVE-2024-33775 facilitates a remote privilege escalation attack via a crafted Dashlet.
5
Is there a workaround for CVE-2024-33775?
Currently, the recommended action for CVE-2024-33775 is to update Nagios XI to the fixed version.