nagios
301 tracked vulnerabilities.
CVE-2018-15713
MEDIUM
Nagios XI 5.5.6 - Authenticated Stored Cross-Site Scripting via Email Address in admin/users.php
Nov 14, 2018
CVSS 5.4
EPSS 0.04
CVE-2018-15712
MEDIUM
Nagios XI 5.5.6 - Unauthenticated Reflected Cross-Site Scripting via Host Parameter
Nov 14, 2018
CVSS 6.1
EPSS 0.27
CVE-2018-15711
HIGH
Nagios XI 5.5.6 - Authenticated Privilege Escalation via API Key Reset
Nov 14, 2018
CVSS 8.8
EPSS 0.28
CVE-2018-15710
HIGH
Nagios XI 5.5.6 - Authenticated Privilege Escalation via Autodiscover_new.php
Nov 14, 2018
CVSS 7.8
EPSS 0.76
CVE-2018-15709
HIGH
Nagios XI 5.5.6 - Authenticated OS Command Injection
Nov 14, 2018
CVSS 8.8
EPSS 0.11
CVE-2018-15708
CRITICAL
Nagios XI Magpie_debug.php Root Remote Code Execution
Nov 14, 2018
CVSS 9.8
EPSS 0.91
CVE-2018-13458
MEDIUM
Nagios Core < 4.4.1 - Denial of Service via Crafted UNIX Socket Payload
Jul 12, 2018
CVSS 5.5
EPSS 0.01
CVE-2018-13457
MEDIUM
Nagios Core < 4.4.1 - Denial of Service via NULL Pointer Dereference in qh_echo
Jul 12, 2018
CVSS 5.5
EPSS 0.01
CVE-2018-13441
MEDIUM
Nagios < 4.4.1 - Denial of Service via qh_help NULL Pointer Dereference
Jul 12, 2018
CVSS 5.5
EPSS 0.00
CVE-2018-12501
MEDIUM
Nagios Fusion < 4.1.4 - Cross-Site Scripting
Jun 16, 2018
CVSS 6.1
EPSS 0.03
CVE-2018-10738
HIGH
NUCLEI
Nagios XI 5.2.0-5.2.9 - SQL Injection via admin/menuaccess.php chbKey1 Parameter
May 16, 2018
CVSS 7.2
EPSS 0.67
CVE-2018-10737
HIGH
NUCLEI
Nagios XI 5.2.0-5.2.9 - SQL Injection via Logbook Search Parameter
May 16, 2018
CVSS 7.2
EPSS 0.83
CVE-2018-10736
HIGH
NUCLEI
Nagios XI 5.2.0-5.2.9 - SQL Injection via admin/info.php key1 Parameter
May 16, 2018
CVSS 7.2
EPSS 0.83
CVE-2018-10735
HIGH
NUCLEI
Nagios XI < 5.2.9 - SQL Injection via admin/commandline.php cname Parameter
May 16, 2018
CVSS 7.2
EPSS 0.86
CVE-2018-10554
MEDIUM
Nagios XI 5.4.13 - Cross-Site Scripting via CSRF
Apr 30, 2018
CVSS 5.4
EPSS 0.02
CVE-2018-10553
MEDIUM
Nagios XI 5.4.13 - Authenticated Path Traversal via xiwindow Parameter
Apr 30, 2018
CVSS 6.5
EPSS 0.03
CVE-2018-8736
HIGH
Nagios XI <5.4.13 - Privilege Escalation
Apr 18, 2018
CVSS 8.8
EPSS 0.65
CVE-2018-8735
HIGH
Nagios XI 5.2.0-5.4.12 - Remote Code Execution via OS Command Injection
Apr 18, 2018
CVSS 8.8
EPSS 0.72
CVE-2018-8734
CRITICAL
Nagios XI 5.2.0-5.4.12 - SQL Injection via selInfoKey1 Parameter
Apr 18, 2018
CVSS 9.8
EPSS 0.79
CVE-2018-8733
CRITICAL
Nagios XI 5.2.0-5.4.12 - Unauthenticated SQL Injection via Core Config Manager
Apr 18, 2018
CVSS 9.8
EPSS 0.77
CVE-2017-20209
MEDIUM
Nagios Fusion < 4.0.1 - Cross-Site Scripting via Users and Servers Pages
Oct 30, 2025
CVSS 6.1
EPSS 0.00
CVE-2017-14312
HIGH
Nagios Core <4.3.4 - Privilege Escalation
Sep 11, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-12847
MEDIUM
Nagios Core <4.3.3 - Privilege Escalation
Aug 23, 2017
CVSS 6.3
EPSS 0.00
CVE-2016-15053
MEDIUM
Nagios XI < 5.2.4 - Cross-Site Scripting via My Reports Listing
Oct 30, 2025
CVSS 5.4
EPSS 0.00
CVE-2016-15052
MEDIUM
Nagios XI < 5.2.4 - Cross-Site Scripting via Menu System
Oct 30, 2025
CVSS 5.4
EPSS 0.00
Products
nagios_xi 192
nagios 37
log_server 23
fusion 19
network_analyzer 7
nagios_core 5
XI 3
incident_manager 3
plugins 3
remote_plug_in_executor 3
Log Server 2
Nagios XI 2
favorites 2
nagios_cross_platform_agent 2
business_process_intelligence 1
nagios_network_analyzer 1
nagios_xi_docker_wizard 1
nagios_xi_switch_wizard 1
nagios_xi_watchguard_wizard 1
ndoutils 1
remote_plugin_executor 1
Quick Filters