Search CVE reports
11 – 20 of 64 results
CVE-2020-6582
Low priorityNagios NRPE 3.2.1 has a Heap-Based Buffer Overflow, as demonstrated by interpretation of a small negative number as a large positive number during a bzero call.
1 affected package
nagios-nrpe
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
nagios-nrpe | Not affected | Not affected | Not affected | Vulnerable | Needs evaluation |
CVE-2020-6581
Low priorityNagios NRPE 3.2.1 has Insufficient Filtering because, for example, nasty_metachars interprets \n as the character \ and the character n (not as the \n newline sequence). This can cause command injection.
1 affected package
nagios-nrpe
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
nagios-nrpe | Not affected | Not affected | Not affected | Vulnerable | Not affected |
CVE-2019-3698
Medium priorityUNIX Symbolic Link (Symlink) Following vulnerability in the cronjob shipped with nagios of SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 11; openSUSE Factory allows local attackers to cause cause DoS or potentially...
2 affected packages
icinga, nagios3
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
icinga | — | — | — | Not affected | Not affected |
nagios3 | — | — | — | Not affected | Not affected |
CVE-2018-18245
Low priorityNagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.
2 affected packages
nagios3, nagios4
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
nagios3 | Not in release | Not in release | Not in release | Vulnerable | Vulnerable |
nagios4 | Not affected | Not affected | Not affected | Not in release | Not in release |
CVE-2016-8641
Low priorityA privilege escalation vulnerability was found in nagios 4.2.x that occurs in daemon-init.in when creating necessary files and insecurely changing the ownership afterwards. It's possible for the local attacker to create symbolic...
2 affected packages
icinga, nagios3
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
icinga | — | — | — | Not affected | Not affected |
nagios3 | — | — | — | Not affected | Not affected |
CVE-2018-13458
Medium priorityqh_core in Nagios Core 4.4.1 and earlier is prone to a NULL pointer dereference vulnerability, which allows attackers to cause a local denial-of-service condition by sending a crafted payload to the listening UNIX socket.
1 affected package
nagios4
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
nagios4 | — | — | — | Not in release | Not in release |
CVE-2018-13457
Medium priorityqh_echo in Nagios Core 4.4.1 and earlier is prone to a NULL pointer dereference vulnerability, which allows attackers to cause a local denial-of-service condition by sending a crafted payload to the listening UNIX socket.
1 affected package
nagios4
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
nagios4 | — | — | — | Not in release | Not in release |
CVE-2018-13441
Medium priorityqh_help in Nagios Core version 4.4.1 and earlier is prone to a NULL pointer dereference vulnerability, which allows attacker to cause a local denial-of-service condition by sending a crafted payload to the listening UNIX socket.
1 affected package
nagios4
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
nagios4 | — | — | — | Not in release | Not in release |
CVE-2018-10738
Medium priorityA SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/menuaccess.php chbKey1 parameter.
1 affected package
nagios3
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
nagios3 | — | — | — | Not affected | Not affected |
CVE-2018-10737
Medium priorityA SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/logbook.php txtSearch parameter.
1 affected package
nagios3
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS | 16.04 LTS |
---|---|---|---|---|---|
nagios3 | — | — | — | Not affected | Not affected |