CVE-2012-10029

NONE
CVSS v3
CVSS v2
69.42% EPSS (exploit probability)
CWE-78CWE

Description

Nagios XI Network Monitor prior to Graph Explorer component version 1.3 contains a command injection vulnerability in `visApi.php`. An authenticated user can inject system commands via unsanitized parameters such as `host`, resulting in remote code execution.

Affected routers (0)

No routers currently mapped to this CVE in our database.

External references