VYPR
High severity7.2NVD Advisory· Published Oct 26, 2021· Updated Jun 17, 2026

CVE-2021-40345

CVE-2021-40345

Description

An issue was discovered in Nagios XI 5.8.5. In the Manage Dashlets section of the Admin panel, an administrator can upload ZIP files. A command injection (within the name of the first file in the archive) allows an attacker to execute system commands.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Nagios/XI2 versions
    cpe:2.3:a:nagios:nagios_xi:5.8.5:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:nagios:nagios_xi:5.8.5:*:*:*:*:*:*:*
    • (no CPE)range: = 5.8.5
  • Nagios XI/Nagios XIdescription

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.