Security Advisory

CVE-2021-40345

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-26 00:00:00
Last updated 2024-08-04 02:27:31
Assigner mitre
State PUBLISHED

Description

An issue was discovered in Nagios XI 5.8.5. In the Manage Dashlets section of the Admin panel, an administrator can upload ZIP files. A command injection (within the name of the first file in the archive) allows an attacker to execute system commands.