In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for Debian:11
nagvis
.
Note: Versions mentioned in the description apply only to the upstream nagvis
package and not the nagvis
package as distributed by Debian
.
See How to fix?
for Debian:11
relevant fixed versions and status.
The "NagVis" component within Checkmk is vulnerable to remote code execution. An authenticated attacker with administrative level privileges is able to upload a malicious PHP file and modify specific settings to execute the contents of the file as PHP.