CVE-2018-16144: Opsview
Critical severity, CVSS 9.8. EPSS: 32.7% chance of exploitation in the next 30 days.
The test connection functionality in the NetAudit section of Opsview Monitor before 5.3.1 and 5.4.x before 5.4.2 is vulnerable to command injection due to improper sanitization of the rancid_password parameter.
Affected products
- Opsview Opsview: before 5.3.1 (fixed in 5.3.1); from 5.4.0, before 5.4.2 (fixed in 5.4.2)
Published 2018-09-05. Last modified 2026-06-17.