CVE-2020-24899: Nagios XI

High severity, CVSS 8.8. EPSS: 16.6% chance of exploitation in the next 30 days.

Nagios XI 5.7.2 is affected by a remote code execution (RCE) vulnerability. An authenticated user can inject additional commands into normal webapp query.

Affected products

  • Nagios Nagios XI: version 5.7.2 only

Published 2021-02-15. Last modified 2026-06-17.