SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Nagios Core Config Manager SQL Injection

Category: WEB-ATTACKS      

SQL injection vulnerability in functions/prepend_adm.php in Nagios Core Config Manager in Nagios XI before 2012R2.4 allows remote attackers to execute arbitrary SQL commands via the tfPassword parameter to nagiosql/index.php.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6875


Relevant Information