Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Matthew Bach

#26911of 53,632
9.4Total CVSS
Vulnerabilities · 1
PT-2025-44507
9.4
2025-10-30
Nagios Enterprises · Nagios Xi · CVE-2024-14009
**Name of the Vulnerable Software and Affected Versions** Nagios XI versions prior to 2024R1.0.1 **Description** Nagios XI versions prior to 2024R1.0.1 have a privilege escalation issue within the System Profile component. This component is an administrative diagnostic and configuration capability. Improper access controls and unsafe handling of exported/imported profile data and operations could allow an authenticated administrator to execute actions on the underlying XI host outside the application's security scope, potentially leading to root privileges on the XI server. **Recommendations** Update to version 2024R1.0.1 or later.