VendorsNagiosnagios_xiall versions
Vulnerabilities

Nagios Nagios Xi

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

194CVEs
CVE-2020-15903
An issue was found in Nagios XI before 5.7.3. There is a privilege escalation vulnerability in backend scripts that ran as root where some included files were editable by nagios user. This issue was fixed in version 5.7.3.
Published 2020-09-09 · Modified
10.0EPSS 0.048
CVE-2020-28910
Creation of a Temporary Directory with Insecure Permissions in Nagios XI 5.7.5 and earlier allows for Privilege Escalation via creation of symlinks, which are mishandled in getprofile.sh.
Published 2021-05-24 · Modified
10.0EPSS 0.039
CVE-2020-28900
Insufficient Verification of Data Authenticity in Nagios Fusion 4.1.8 and earlier and Nagios XI 5.7.5 and earlier allows for Escalation of Privileges or Code Execution as root via vectors related to an untrusted update package to upgrade_to_latest.sh.
Published 2021-05-24 · Modified
10.0EPSS 0.024
CVE-2018-15708
Snoopy 1.0 in Nagios XI 5.5.6 allows remote unauthenticated attackers to execute arbitrary commands via a crafted HTTP request.
Published 2018-11-14 · Modified
9.82 PoCEPSS 0.894
CVE-2021-37350
Nagios XI before version 5.8.5 is vulnerable to SQL injection vulnerability in Bulk Modifications Tool due to improper input sanitisation.
Published 2021-08-13 · Modified
9.8EPSS 0.793
CVE-2023-48085
Nagios XI before version 5.11.3 was discovered to contain a remote code execution (RCE) vulnerability via the component command_test.php.
Published 2023-12-14 · Modified
9.8EPSS 0.758
CVE-2018-8734
SQL injection vulnerability in the core config manager in Nagios XI 5.2.x through 5.4.x before 5.4.13 allows an attacker to execute arbitrary SQL commands via the selInfoKey1 parameter.
Published 2018-04-18 · Modified
9.82 PoCEPSS 0.526
CVE-2024-24401
SQL Injection vulnerability in Nagios XI 2024R1.01 allows a remote attacker to execute arbitrary code via a crafted payload to the monitoringwizard.php component.
Published 2024-02-26 · Analyzed
9.8EPSS 0.459
CVE-2023-48084
Nagios XI before version 5.11.3 was discovered to contain a SQL injection vulnerability via the bulk modification tool.
Published 2023-12-14 · Modified
9.8EPSS 0.337
CVE-2018-8733
Authentication bypass vulnerability in the core config manager in Nagios XI 5.2.x through 5.4.x before 5.4.13 allows an unauthenticated attacker to make configuration changes and leverage an authenticated SQL injection vulnerability.
Published 2018-04-18 · Modified
9.82 PoCEPSS 0.270
CVE-2021-3193
Improper access and command validation in the Nagios Docker Config Wizard before 1.1.2, as used in Nagios XI through 5.7, allows an unauthenticated attacker to execute remote code as the apache user.
Published 2021-01-22 · Modified
9.8EPSS 0.098
CVE-2019-9165
SQL injection vulnerability in Nagios XI before 5.5.11 allows attackers to execute arbitrary SQL commands via the API when using fusekeys and malicious user id.
Published 2019-03-28 · Modified
9.8EPSS 0.053
CVE-2019-12279
Nagios XI 5.6.1 allows SQL injection via the username parameter to login.php?forgotpass (aka the reset password form). NOTE: The vendor disputes this issues as not being a vulnerability because the issue does not seem to be a legitimate SQL Injection. The POC does not show any valid injection that can be done with the variable provided, and while the username value being passed does get used in a SQL query, it is passed through SQL escaping functions when creating the call. The vendor tried re-creating the issue with no luck
Published 2019-05-22 · Modified
9.81 PoCEPSS 0.042
CVE-2021-36364
Nagios XI before 5.8.5 incorrectly allows backup_xi.sh wildcards.
Published 2021-09-28 · Modified
9.8EPSS 0.040
CVE-2021-36366
Nagios XI before 5.8.5 incorrectly allows manage_services.sh wildcards.
Published 2021-09-28 · Modified
9.8EPSS 0.040
CVE-2021-36363
Nagios XI before 5.8.5 has Incorrect Permission Assignment for migrate.php.
Published 2021-09-28 · Modified
9.8EPSS 0.038
CVE-2021-36365
Nagios XI before 5.8.5 has Incorrect Permission Assignment for repairmysql.sh.
Published 2021-09-28 · Modified
9.8EPSS 0.038
CVE-2018-17148
An Insufficient Access Control vulnerability (leading to credential disclosure) in coreconfigsnapshot.php (aka configuration snapshot page) in Nagios XI before 5.5.4 allows remote attackers to gain access to configuration files containing confidential credentials.
Published 2019-06-19 · Modified
9.8EPSS 0.037
CVE-2024-24402
An issue in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted script to the /usr/local/nagios/bin/npcd component.
Published 2024-02-26 · Modified
9.8EPSS 0.034
CVE-2022-38250
Nagios XI v5.8.6 was discovered to contain a SQL injection vulnerability via the mib_name parameter at the Manage MIBs page.
Published 2022-09-07 · Modified
9.8EPSS 0.029
CVE-2024-14003
Nagios XI < 2024R1.2 RCE via NRDP Server Plugins
Published 2025-10-30 · Analyzed
9.8EPSS 0.021
CVE-2024-13999
Nagios XI < 2024R1.1.3 AD/LDAP Token Authenticated Information Disclosure
Published 2025-10-30 · Analyzed
9.8EPSS 0.018
CVE-2012-10063
Nagios XI < 2012R1.3 Authenticated SQL Injection in Legacy CCM
Published 2025-10-30 · Analyzed
9.8EPSS 0.010
CVE-2024-13996
Nagios XI < 2024R1.1.3 Session Not Invalidated After Password Change
Published 2025-10-30 · Analyzed
9.8EPSS 0.010
CVE-2024-13994
Nagios XI < 2024R1.1.2 Allow Insecure Logins Missing Authorization
Published 2025-10-30 · Analyzed
9.8EPSS 0.009
CVE-2024-14005
Nagios XI < 2024R1.2 Command Injection via Docker Wizard
Published 2025-10-30 · Analyzed
9.4EPSS 0.041
CVE-2025-34284
Nagios XI < 2024R2 Authenticated Command Injection via WinRM Plugin
Published 2025-10-30 · Analyzed
9.4EPSS 0.041
CVE-2020-36856
Nagios XI < 5.6.14 Authenticated RCE command_test.php via address
Published 2025-10-30 · Analyzed
9.4EPSS 0.023
CVE-2025-34134
Nagios XI < 2024R1.4.2 RCE via Business Process Intelligence (BPI)
Published 2025-10-30 · Analyzed
9.4EPSS 0.022
CVE-2024-14008
Nagios XI < 2024R1.3.2 RCE via WinRM Configuration Wizard
Published 2025-10-30 · Analyzed
9.4EPSS 0.022
CVE-2025-34286
Nagios XI < 2026R1 RCE via Run Check Command in CCM
Published 2025-10-30 · Analyzed
9.4EPSS 0.022
CVE-2023-7317
Nagios XI < 2024R1 Web SSH Terminal Missing Access Control
Published 2025-10-30 · Analyzed
9.4EPSS 0.015
CVE-2024-14009
Nagios XI < 2024R1.0.1 Privilege Escalation via System Profile
Published 2025-10-30 · Analyzed
9.4EPSS 0.011
CVE-2024-13997
Nagios XI < 2024R1.1.3 Privilege Escalation via Migrate Server Feature to Root on Host
Published 2025-11-03 · Analyzed
9.4EPSS 0.011
CVE-2023-48082
Nagios XI before 2024R1 was discovered to improperly handle API keys generation (randomly-generated), allowing attackers to possibly generate the same set of API keys for all users and utilize them to authenticate.
Published 2024-10-14 · Analyzed
9.1EPSS 0.015
CVE-2020-35578
An issue was discovered in the Manage Plugins page in Nagios XI before 5.8.0. Because the line-ending conversion feature is mishandled during a plugin upload, a remote, authenticated admin user can execute operating-system commands.
Published 2021-01-13 · Modified
9.01 PoCEPSS 0.819
CVE-2020-5791
Improper neutralization of special elements used in an OS command in Nagios XI 5.7.3 allows a remote, authenticated admin user to execute operating system commands with the privileges of the apache user.
Published 2020-10-20 · Modified
9.01 PoCEPSS 0.786
CVE-2019-15949
Nagios XI before 5.6.6 allows remote command execution as root. The exploit requires access to the server as the nagios user, or access as the admin user via the web interface. The getprofile.sh script, invoked by downloading a system profile (profile.php?cmd=download), is executed as root via a passwordless sudo entry; the script executes check_plugin, which is owned by the nagios user. A user logged into Nagios XI with permissions to modify plugins, or the nagios user on the server, can modify the check_plugin executable and insert malicious commands to execute as root.
Published 2019-09-05 · Analyzed
9.0KEV2 PoCEPSS 0.770
CVE-2021-25298
Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/configwizards/cloud-vm/cloud-vm.inc.php due to improper sanitization of authenticated user-controlled input by a single HTTP request, which can lead to OS command injection on the Nagios XI server.
Published 2021-02-15 · Analyzed
9.0KEVEPSS 0.751
CVE-2021-25296
Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi/html/includes/configwizards/windowswmi/windowswmi.inc.php due to improper sanitization of authenticated user-controlled input by a single HTTP request, which can lead to OS command injection on the Nagios XI server.
Published 2021-02-15 · Analyzed
9.0KEVEPSS 0.722
1 / 5Next →