PT-2006-3141 · Nagios · Nagios

Sebastian Krahmer

·

Published

2006-05-03

·

Updated

2024-06-15

·

CVE-2006-2162

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Nagios versions 1.x before 1.4 Nagios versions 2.x before 2.3
Description The issue is related to a buffer overflow in CGI scripts. This can be exploited by remote attackers to execute arbitrary code via a negative content length (Content-Length) HTTP header.
Recommendations For Nagios versions 1.x before 1.4, update to version 1.4 or later. For Nagios versions 2.x before 2.3, update to version 2.3 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-2162
DSA-1072-1
OPENSUSE-SU-2024:11073-1

Affected Products

Nagios