CVE-2023-40931 Information
Sep 21, 2023
cve
Description
A SQL injection vulnerability in Nagios XI from version 5.11.0 up to and including 5.11.1 allows authenticated attackers to execute arbitrary SQL commands via the ID parameter in the POST request to /nagiosxi/admin/banner_message-ajaxhelper.php
Reference
https://outpost24.com/blog/nagios-xi-vulnerabilities/ http://nagios.com https://www.nagios.com/products/security/
Share on: