Beveiligingsadvies

CVE-2023-40931

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-09-19 00:00:00
Laatst bijgewerkt 2026-07-09 00:27:52
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

A SQL injection vulnerability in Nagios XI from version 5.11.0 up to and including 5.11.1 allows authenticated attackers to execute arbitrary SQL commands via the ID parameter in the POST request to /nagiosxi/admin/banner_message-ajaxhelper.php