Improper access and command validation in the Nagios Docker Config Wizard before 1.1.2, as used in Nagios XI through 5.7, allows an unauthenticated attacker to execute remote code as the apache user.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.nagios.com/products/security/ |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-01-22T03:56:03
Updated: 2024-08-03T16:45:51.395Z
Reserved: 2021-01-21T00:00:00
Link: CVE-2021-3193
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-01-26T18:16:28.367
Modified: 2021-02-03T17:51:26.127
Link: CVE-2021-3193
Redhat
No data.