HTTP: Nagios XI multiple Command Injection
This signature detects attempts to exploit a known vulnerability against Nagios XI. A successful attack can lead to command injection and arbitrary code execution.
Extended Description
In Nagios XI before 5.7.3, ajaxhelper.php allows remote authenticated attackers to execute arbitrary commands via cmdsubsys.
Affected Products
Nagios nagios_xi
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Nagios
7.5
9.0