CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.5. Exploitation may require the attacker to be authenticated.
CVE
CVE-2024-14002
Severity
MEDIUM
CVSS
5.5
EPSS
1.20%
Original NVD Description
Nagios XI versions prior to 2024R1.1.4 contain a local file inclusion (LFI) vulnerability via its NagVis integration. An authenticated user can supply crafted path values that cause the server to include local files, potentially exposing sensitive information from the underlying host.
Related CVEs
Other vulnerabilities affecting the same vendor(s)