nagios

301 tracked vulnerabilities.

CVE-2021-47700 HIGH
Nagios XI <5.8.7 - Privilege Escalation
Oct 30, 2025
CVSS 7.8
EPSS 0.00
CVE-2021-47699 MEDIUM
Nagios XI < 5.8.7 - Cross-Site Scripting via Audit Log Send to NLS Form
Oct 30, 2025
CVSS 5.4
EPSS 0.00
CVE-2021-47697 MEDIUM
Nagios XI < 5.8.0 - Cross-Site Scripting via Views URL Handling
Oct 30, 2025
CVSS 5.4
EPSS 0.00
CVE-2021-47696 MEDIUM
Nagios XI < 5.8.0 - Cross-Site Scripting via BPI Config ID Handling
Oct 30, 2025
CVSS 5.4
EPSS 0.00
CVE-2021-47695 MEDIUM
Nagios XI < 5.8.0 - Stored Cross-Site Scripting via My Tools Page
Oct 30, 2025
CVSS 5.4
EPSS 0.00
CVE-2021-47694 MEDIUM
Nagios XI < 5.8.6 - Reflected Cross-Site Scripting via CCM Test Command
Oct 30, 2025
CVSS 6.1
EPSS 0.00
CVE-2021-47693 HIGH
Nagios XI < 5.8.5 - Authenticated SQL Injection via Core Config Manager Search Text
Oct 30, 2025
CVSS 8.8
EPSS 0.01
CVE-2021-47691 MEDIUM
Nagios XI < 5.8.2 - Cross-Site Scripting via Core Config Manager Services Page
Oct 30, 2025
CVSS 5.4
EPSS 0.00
CVE-2021-47690 MEDIUM
Nagios XI < 5.8.2 - Cross-Site Scripting in Core Config Manager Overlay Modals
Oct 30, 2025
CVSS 5.4
EPSS 0.00
CVE-2021-47689 MEDIUM
Nagios XI < 5.8.0 - Cross-Site Scripting in Core Config Manager Templates Pages
Oct 30, 2025
CVSS 5.4
EPSS 0.01
CVE-2021-43584 MEDIUM
Nagios Cross-Platform Agent < 2.4.0 - Cross-Site Scripting in Tail Event Logs Filter
Jan 24, 2024
CVSS 4.8
EPSS 0.00
CVE-2021-4285 LOW
Nagios NCPA < 2.4.0 - Cross-Site Scripting via Tail Template Name Parameter
Dec 27, 2022
CVSS 3.5
EPSS 0.06
CVE-2021-40345 HIGH
Nagios XI <5.8.5 - Command Injection
Oct 26, 2021
CVSS 7.2
EPSS 0.75
CVE-2021-40344 HIGH
Nagios XI 5.8.5 - Authenticated Remote Code Execution via Custom Includes File Upload
Oct 26, 2021
CVSS 7.2
EPSS 0.67
CVE-2021-40343 HIGH
Nagios XI <5.8.5 - Privilege Escalation
Oct 26, 2021
CVSS 7.8
EPSS 0.01
CVE-2021-33179 MEDIUM
Nagios XI <5.8.4 - Authenticated XSS
Oct 14, 2021
CVSS 6.1
EPSS 0.65
CVE-2021-33177 HIGH
Nagios XI < 5.8.5 - Authenticated SQL Injection via Bulk Modifications
Oct 14, 2021
CVSS 8.8
EPSS 0.41
CVE-2021-37223 MEDIUM
Nagios XI <= 5.8.4 - Authenticated Server-Side Request Forgery via schedulereport.php
Oct 05, 2021
CVSS 6.5
EPSS 0.01
CVE-2021-36366 CRITICAL
Nagios XI < 5.8.5 - OS Command Injection via manage_services.sh Wildcards
Sep 28, 2021
CVSS 9.8
EPSS 0.11
CVE-2021-36365 CRITICAL
Nagios XI <5.8.5 - Privilege Escalation
Sep 28, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-36364 CRITICAL
Nagios XI < 5.8.5 - OS Command Injection via backup_xi.sh Wildcard Handling
Sep 28, 2021
CVSS 9.8
EPSS 0.11
CVE-2021-36363 CRITICAL
Nagios XI <5.8.5 - Privilege Escalation
Sep 28, 2021
CVSS 9.8
EPSS 0.01
CVE-2021-38156 MEDIUM NUCLEI
Nagios XI < 5.8.6 - Stored Cross-Site Scripting in Dashboard Editor
Sep 15, 2021
CVSS 5.4
EPSS 0.84
CVE-2021-37353 CRITICAL
Nagios XI Docker Wizard < 1.1.3 - Server-Side Request Forgery via table_population.php
Aug 13, 2021
CVSS 9.8
EPSS 0.02
CVE-2021-37352 MEDIUM
Nagios XI < 5.8.5 - Open Redirect via Crafted URL
Aug 13, 2021
CVSS 6.1
EPSS 0.03