← Back

CVE-2006-2489

nvd nist
Published: May 19, 2006Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Integer overflow in CGI scripts in Nagios 1.x before 1.4.1 and 2.x before 2.3.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a content length (Content-Length) HTTP header. NOTE: this is a different vulnerability than CVE-2006-2162.

Affected (23)

Products: Nagios: Nagios
1 product
Nagios
Configuration A
23 vulnerable
Vulnerable SoftwareAffected Versions
Nagios
Version 1.0
Version 1.0b1
Version 1.0b2
Version 1.0b3
Version 1.0b4
Version 1.0b5
Version 1.0b6
Version 1.1
Version 1.2
Version 1.3
Version 1.4
Version 2.0
Version 2.0b1
Version 2.0b2
Version 2.0b3
Version 2.0b4
Version 2.0b5
Version 2.0b6
Version 2.0rc1
Version 2.0rc2
Version 2.1
Version 2.2
Version 2.3

References (20)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.