← back
CVE-2023-40931

CVE-2023-40931

EPSS 13.5%
A SQL injection vulnerability in Nagios XI from version 5.11.0 up to and including 5.11.1 allows authenticated attackers to execute arbitrary SQL commands via the ID parameter in the POST request to /nagiosxi/admin/banner_message-ajaxhelper.php
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →