Vulnerability Database

317,182

Total vulnerabilities in the database

CVE-2023-48082

Nagios XI before 2024R1 was discovered to improperly handle API keys generation (randomly-generated), allowing attackers to possibly generate the same set of API keys for all users and utilize them to authenticate.

  • Published: Oct 14, 2024
  • Updated: Nov 16, 2025
  • CVE: CVE-2023-48082
  • Severity: Critical
  • Exploit:

CVSS v3:

  • Severity: Critical
  • Score: 9.1
  • AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Software From Fixed in
nagios / nagios_xi - 2014
nagios / nagios_xi 2014-r1.0 2014-r1.0.x
nagios / nagios_xi 2014-r1.1 2014-r1.1.x
nagios / nagios_xi 2014-r1.2 2014-r1.2.x
nagios / nagios_xi 2014-r1.3 2014-r1.3.x
nagios / nagios_xi 2014-r1.4 2014-r1.4.x
nagios / nagios_xi 2014-r2.7 2014-r2.7.x
nagios / nagios_xi 2014-r2.0 2014-r2.0.x
nagios / nagios_xi 2014-r2.1 2014-r2.1.x
nagios / nagios_xi 2014-r2.2 2014-r2.2.x
nagios / nagios_xi 2014-r2.3 2014-r2.3.x
nagios / nagios_xi 2014-r2.4 2014-r2.4.x
nagios / nagios_xi 2014-r2.5 2014-r2.5.x
nagios / nagios_xi 2014-r2.6 2014-r2.6.x