Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2020-28902
Command Injection in Nagios Fusion 4.1.8 and earlier allows Privilege Escalation from apache to root in cmd_subsys.php.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.021
EPSS Ranking
83.1%
CVSS Severity
CVSS v3 Score
9.8
CVSS v2 Score
10.0
References
http://packetstormsecurity.com/files/162783/Nagios-XI-Fusion-Privilege-Escalation-Cross-Site-Scripting-Code-Execution.html
https://skylightcyber.com/2021/05/20/13-nagios-vulnerabilities-7-will-shock-you/
https://www.nagios.com/downloads/nagios-xi/change-log/
http://packetstormsecurity.com/files/162783/Nagios-XI-Fusion-Privilege-Escalation-Cross-Site-Scripting-Code-Execution.html
https://skylightcyber.com/2021/05/20/13-nagios-vulnerabilities-7-will-shock-you/
https://www.nagios.com/downloads/nagios-xi/change-log/
Products affected by CVE-2020-28902
Nagios
»
Fusion
»
Version:
4.0.0
cpe:2.3:a:nagios:fusion:4.0.0
Nagios
»
Fusion
»
Version:
4.0.1
cpe:2.3:a:nagios:fusion:4.0.1
Nagios
»
Fusion
»
Version:
4.1.0
cpe:2.3:a:nagios:fusion:4.1.0
Nagios
»
Fusion
»
Version:
4.1.1
cpe:2.3:a:nagios:fusion:4.1.1
Nagios
»
Fusion
»
Version:
4.1.2
cpe:2.3:a:nagios:fusion:4.1.2
Nagios
»
Fusion
»
Version:
4.1.3
cpe:2.3:a:nagios:fusion:4.1.3
Nagios
»
Fusion
»
Version:
4.1.4
cpe:2.3:a:nagios:fusion:4.1.4
Nagios
»
Fusion
»
Version:
4.1.5
cpe:2.3:a:nagios:fusion:4.1.5
Nagios
»
Fusion
»
Version:
4.1.6
cpe:2.3:a:nagios:fusion:4.1.6
Nagios
»
Fusion
»
Version:
4.1.7
cpe:2.3:a:nagios:fusion:4.1.7
Nagios
»
Fusion
»
Version:
4.1.8
cpe:2.3:a:nagios:fusion:4.1.8
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved