Known Vulnerabilities for Nagios Xi by Nagios
Listed below are 10 of the newest known vulnerabilities associated with "Nagios Xi" by "Nagios".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-24893 json | openITCOCKPIT is an open source monitoring tool built for different monitoring engines. openITCOCKPIT Community Edition prior... | Not Provided | 2026-04-14 | 2026-04-15 |
| CVE-2023-40934 json | A SQL injection vulnerability in Nagios XI 5.11.1 and below allows authenticated attackers with privileges to manage host esc... | 7.2 - HIGH | 2023-09-19 | 2023-09-22 |
| CVE-2023-40933 json | A SQL injection vulnerability in Nagios XI v5.11.1 and below allows authenticated attackers with announcement banner configur... | 8.8 - HIGH | 2023-09-19 | 2023-09-22 |
| CVE-2023-40932 json | A Cross-site scripting (XSS) vulnerability in Nagios XI version 5.11.1 and below allows authenticated attackers with access t... | 5.4 - MEDIUM | 2023-09-19 | 2023-09-22 |
| CVE-2023-40931 json | A SQL injection vulnerability in Nagios XI from version 5.11.0 up to and including 5.11.1 allows authenticated attackers to e... | 6.5 - MEDIUM | 2023-09-19 | 2023-09-22 |
| CVE-2022-38254 json | Nagios XI before v5.8.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the ajax.php script in CCM 3... | 6.1 - MEDIUM | 2022-09-07 | 2022-09-09 |
| CVE-2022-38251 json | Nagios XI v5.8.6 was discovered to contain a cross-site scripting (XSS) vulnerability via the System Performance Settings pag... | 4.8 - MEDIUM | 2022-09-07 | 2022-09-09 |
| CVE-2022-38250 json | Nagios XI v5.8.6 was discovered to contain a SQL injection vulnerability via the mib_name parameter at the Manage MIBs page. | 9.8 - CRITICAL | 2022-09-07 | 2022-09-09 |
| CVE-2022-38249 json | Nagios XI v5.8.6 was discovered to contain a cross-site scripting (XSS) vulnerability via the MTR component in version 1.0.4. | 6.1 - MEDIUM | 2022-09-07 | 2022-09-09 |
| CVE-2022-38248 json | Nagios XI before v5.8.7 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities at auditlog.php. | 6.1 - MEDIUM | 2022-09-07 | 2022-09-09 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Nagios | Nagios Xi | 5.8.1 | |||
| Application | Nagios | Nagios Xi | 5.8.0 | |||
| Application | Nagios | Nagios Xi | 5.7.5 | |||
| Application | Nagios | Nagios Xi | 5.7.4 | |||
| Application | Nagios | Nagios Xi | 5.7.3 | |||
| Application | Nagios | Nagios Xi | 5.7.2 | |||
| Application | Nagios | Nagios Xi | 5.7.1 | |||
| Application | Nagios | Nagios Xi | 5.7.0 | |||
| Application | Nagios | Nagios Xi | 5.6.9 | |||
| Application | Nagios | Nagios Xi | 5.6.8 | |||
| Application | Nagios | Nagios Xi | 5.6.7 | |||
| Application | Nagios | Nagios Xi | 5.6.6 | |||
| Application | Nagios | Nagios Xi | 5.6.5 | |||
| Application | Nagios | Nagios Xi | 5.6.4 | |||
| Application | Nagios | Nagios Xi | 5.6.3 | |||
| Application | Nagios | Nagios Xi | 5.6.2 | |||
| Application | Nagios | Nagios Xi | 5.6.11 | |||
| Application | Nagios | Nagios Xi | 5.6.1 | |||
| Application | Nagios | Nagios Xi | 5.6.0 | |||
| Application | Nagios | Nagios Xi | 5.5.9 |