Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple stack-based buffer overflows in the get_history function in history.cgi in Nagios Core before 3.4.4, and Icinga 1.6.x before 1.6.2, 1.7.x before 1.7.4, and 1.8.x before 1.8.4, might allow remote attackers to execute arbitrary code via a long (1) host_name variable (host parameter) or (2) svc_description variable.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Nagios Core/Icinga ‘process_cgivars()’函数栈缓冲区溢出漏洞
Vulnerability Description
Icinga是Icinga项目的一套企业级开源监控系统,是一个介于Nagios社区版和企业版间的产品。 Nagios Core 3.4.4之前的版本,Icinga 1.6.2之前的1.6.x版本,1.7.4之前的1.7.x版本,1.8.4之前的1.8.x版本中的history.cgi中的get_history函数中存在多个基于栈的缓冲区溢出漏洞。通过较长的host_name变量(host参数)或svc_description变量,远程攻击者利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A