A SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/logbook.php txtSearch parameter.
2018-05-16T13:29:00.373
2024-11-21T03:41:57.500
Modified
CVSSv3.0: 7.2 (HIGH)
AV:N/AC:L/Au:S/C:P/I:P/A:P
8.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | nagios | nagios_xi | ≤ 5.2.9 | Yes |
Application | nagios | nagios_xi | < 5.4.13 | Yes |