EXPOSURES › CVE-2019-15949
CVE-2019-15949
HIGH ⌖ ON CISA KEV · EXPLOITEDNagios XI allowed attackers to modify the check_plugin executable and execute arbitrary commands as root.
An attacker could alter the check_plugin file to run malicious code with root privileges, enabling full system compromise. DIB organizations must ensure Nagios XI is patched and monitored for unauthorized file modifications to prevent remote code execution and maintain compliance with NIST 800-171 controls.
Shame score — A known RCE vulnerability in a widely deployed monitoring tool that allowed root-level code execution via a modifiable executable, indicating a severe lack of input validation and patch management.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Nagios XI contains a remote code execution vulnerability in which a user can modify the check_plugin executable and insert malicious commands to execute as root.
"Nagios XI contains a remote code execution vulnerability in which a user can modify the check_plugin executable and insert malicious commands to execute as root."