Nagios XI
cpe:2.3:a:nagios:nagios_xi:*:*:*:*:*:*:*
- < 2024R1.1.4
A local file inclusion vulnerability has been identified in Nagios XI versions prior to 2024R1.1.4. This vulnerability allows authenticated users to manipulate path values through the NagVis integration, leading to the inclusion of local files on the server. Such exploitation could potentially expose sensitive information from the underlying host.
Exploitation of this vulnerability could result in unauthorized access to local files, potentially exposing sensitive information.
Users can upgrade to Nagios XI version 2024R1.1.4 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.