Cross-site request forgery (CSRF) vulnerability in cmd.cgi in (1) Nagios 3.0.5 and (2) op5 Monitor before 4.0.1 allows remote attackers to send commands to the Nagios process, and trigger execution of arbitrary programs by this process, via unspecified HTTP requests.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2008-5007 | Cross-site request forgery (CSRF) vulnerability in cmd.cgi in (1) Nagios 3.0.5 and (2) op5 Monitor before 4.0.1 allows remote attackers to send commands to the Nagios process, and trigger execution of arbitrary programs by this process, via unspecified HTTP requests. |
Ubuntu USN |
USN-698-2 | Nagios3 vulnerabilities |
Ubuntu USN |
USN-698-3 | Nagios vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T10:40:16.763Z
Reserved: 2008-11-10T00:00:00
Link: CVE-2008-5028
No data.
Status : Deferred
Published: 2008-11-10T15:23:29.563
Modified: 2025-04-09T00:30:58.490
Link: CVE-2008-5028
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN