Improper access and command validation in the Nagios Docker Config Wizard before 1.1.2, as used in Nagios XI through 5.7, allows an unauthenticated attacker to execute remote code as the apache user.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2021-01-22T03:56:03

Updated: 2024-08-03T16:45:51.395Z

Reserved: 2021-01-21T00:00:00

Link: CVE-2021-3193

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-01-26T18:16:28.367

Modified: 2021-02-03T17:51:26.127

Link: CVE-2021-3193

cve-icon Redhat

No data.