Nagios XI
cpe:2.3:a:nagios:nagios_xi:*:*:*:*:*:*:*
- < 5.8.7
A vulnerability exists in Nagios XI versions prior to 5.8.7, where a temporary directory used for Highcharts exports had overly permissive ownership and permissions under the Apache user. This flaw allowed local or co-hosted processes to read or overwrite export artifacts, manipulate paths, and potentially execute code, depending on the deployment.
According to Nagios, this vulnerability could lead to unauthorized disclosure or tampering of data, with a risk of code execution under certain conditions.
Users can upgrade to Nagios XI version 5.8.7 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.