SQL Injection Vulnerability in Nagios XI by Nagios
CVE-2025-67255
8.8HIGH
What is CVE-2025-67255?
In Nagios XI version 2026R1.0.1, a security oversight in the handling of Dashboard parameters allows authenticated users to execute SQL Injection attacks. This lack of proper input filtering can lead to unauthorized access to sensitive data, posing a significant risk to the integrity of the system. Users should be aware of this vulnerability and ensure they apply necessary patches and updates to protect their installations.
