CVE-2021-25298 | Nagios XI 5.7.5 HTTP Request cloud-vm.inc.php os command injection
A vulnerability was found in Nagios XI 5.7.5. It has been rated as critical. This issue affects some unknown processing of the file /usr/local/nagiosxi/html/includes/configwizards/cloud-vm/cloud-vm.inc.php of the component HTTP Request Handler. The manipulation leads to os command injection.
The identification of this vulnerability is CVE-2021-25298. The attack can only be initiated within the local network. Furthermore, there is an exploit available.