CVE Vulnerabilities

CVE-2006-2489

Published: May 19, 2006 | Modified: Oct 03, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in CGI scripts in Nagios 1.x before 1.4.1 and 2.x before 2.3.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a content length (Content-Length) HTTP header. NOTE: this is a different vulnerability than CVE-2006-2162.

Affected Software

Name Vendor Start Version End Version
Nagios Nagios 2.0b5 2.0b5
Nagios Nagios 2.0b6 2.0b6
Nagios Nagios 1.0b3 1.0b3
Nagios Nagios 1.1 1.1
Nagios Nagios 2.1 2.1
Nagios Nagios 1.0b6 1.0b6
Nagios Nagios 1.0 1.0
Nagios Nagios 2.2 2.2
Nagios Nagios 2.0b2 2.0b2
Nagios Nagios 1.0b4 1.0b4
Nagios Nagios 2.0b4 2.0b4
Nagios Nagios 1.2 1.2
Nagios Nagios 1.0b5 1.0b5
Nagios Nagios 2.0b1 2.0b1
Nagios Nagios 2.0 2.0
Nagios Nagios 1.4 1.4
Nagios Nagios 2.0b3 2.0b3
Nagios Nagios 1.3 1.3
Nagios Nagios 2.0rc1 2.0rc1
Nagios Nagios 2.3 2.3
Nagios Nagios 1.0b1 1.0b1
Nagios Nagios 1.0b2 1.0b2
Nagios Nagios 2.0rc2 2.0rc2

References