CVE-2024-13999
EUVD-2024-5505830.10.2025, 22:15
Nagios XI versions prior to 2024R1.1.3, under certain circumstances, disclose the server's Active Directory (AD) or LDAP authentication token to an authenticated user. Exposure of the server’s AD/LDAP token could allow domain-wide authentication misuse, escalation of privileges, or further compromise of network-integrated systems.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| nagios | nagios_xi | 𝑥 < 2024 |
𝑥
= Vulnerable software versions