VYPR
High severity8.8NVD Advisory· Published Nov 14, 2018· Updated Jun 17, 2026

CVE-2018-15711

CVE-2018-15711

Description

Nagios XI 5.5.6 allows remote authenticated attackers to reset and regenerate the API key of more privileged users. The attacker can then use the new API key to execute API calls at elevated privileges.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Nagios/XI2 versions
    cpe:2.3:a:nagios:nagios_xi:5.5.6:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:nagios:nagios_xi:5.5.6:*:*:*:*:*:*:*
    • (no CPE)range: <5.5.6
  • Nagios/Nagioscpe-rescue
    Range: 5.5.6

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.