RULE(RULE ID:336204)

Rule General Information
Release Date: 2022-02-14
Rule Name: Nagios XI Path Traversal Vulnerability (CVE-2021-37343)
Severity:
CVE ID:
Rule Protection Details
Description: A path traversal vulnerability exists in Nagios XI below version 5.8.5 AutoDiscovery component and could lead to post authenticated RCE under security context of the user running Nagios.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Linux
Reference: https://www.nagios.com/downloads/nagios-xi/change-log/
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://www.nagios.com/downloads/nagios-xi/change-log/