CVE-2021-28925

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
08/04/2021
Last modified:
13/04/2021

Description

SQL injection vulnerability in Nagios Network Analyzer before 2.4.3 via the o[col] parameter to api/checks/read/.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nagios:network_analyzer:*:*:*:*:*:*:*:* 2.4.3 (excluding)