Vulnerabilities > Nagios > Nagios XI > 5.8.5
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-06-29 | CVE-2022-29271 | Incorrect Authorization vulnerability in Nagios XI In Nagios XI through 5.8.5, a read-only Nagios user (due to an incorrect permission check) is able to schedule downtime for any host/services. | 6.5 |
2022-06-29 | CVE-2022-29272 | Open Redirect vulnerability in Nagios XI In Nagios XI through 5.8.5, an open redirect vulnerability exists in the login function that could lead to spoofing. | 6.1 |
2021-10-26 | CVE-2021-40343 | Incorrect Permission Assignment for Critical Resource vulnerability in Nagios XI 5.8.5 An issue was discovered in Nagios XI 5.8.5. | 7.8 |
2021-10-26 | CVE-2021-40344 | Unrestricted Upload of File with Dangerous Type vulnerability in Nagios XI 5.8.5 An issue was discovered in Nagios XI 5.8.5. | 7.2 |
2021-10-26 | CVE-2021-40345 | Command Injection vulnerability in Nagios XI 5.8.5 An issue was discovered in Nagios XI 5.8.5. | 7.2 |
2021-10-14 | CVE-2021-33177 | SQL Injection vulnerability in Nagios XI The Bulk Modifications functionality in Nagios XI versions prior to 5.8.5 is vulnerable to SQL injection. | 8.8 |
2021-09-28 | CVE-2021-36363 | Incorrect Default Permissions vulnerability in Nagios XI Nagios XI before 5.8.5 has Incorrect Permission Assignment for migrate.php. | 9.8 |
2021-09-28 | CVE-2021-36364 | Unspecified vulnerability in Nagios XI Nagios XI before 5.8.5 incorrectly allows backup_xi.sh wildcards. | 9.8 |
2021-09-28 | CVE-2021-36365 | Incorrect Default Permissions vulnerability in Nagios XI Nagios XI before 5.8.5 has Incorrect Permission Assignment for repairmysql.sh. | 9.8 |
2021-09-28 | CVE-2021-36366 | Unspecified vulnerability in Nagios XI Nagios XI before 5.8.5 incorrectly allows manage_services.sh wildcards. | 9.8 |