EIP-2026-109825
PRE-CVENagios XI 5.6.5 - Remote Code Execution / Root Privilege Escalation
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-109825. PoCs published by Jak Gibb.
AI-analyzed exploit summary This exploit leverages a privilege escalation vulnerability in Nagios XI <= 5.6.5 by modifying the 'check_plugin' executable, which is executed as root via a passwordless sudo entry in getprofile.sh. The exploit uploads a malicious plugin containing a reverse shell payload and triggers it by generating a system profile.
Description
Nagios XI 5.6.5 - Remote Code Execution / Root Privilege Escalation
Exploits (1)
This exploit leverages a privilege escalation vulnerability in Nagios XI <= 5.6.5 by modifying the 'check_plugin' executable, which is executed as root via a passwordless sudo entry in getprofile.sh. The exploit uploads a malicious plugin containing a reverse shell payload and triggers it by generating a system profile.