nagios xi sql injection vulnerability CVE-2019-20139

This support forum board is for support questions relating to Nagios XI, our flagship commercial network monitoring solution.
Locked
rjmon
Posts: 106
Joined: Wed Dec 06, 2017 11:39 am

nagios xi sql injection vulnerability CVE-2019-20139

Post by rjmon »

As per Nagios Site it says

Upgrade the Operations Center component from Admin > Manage Components to version 1.3.3 or above.

I cannot find the Operations center component with the latest version 1.3.3 above. where can i find this package?
scottwilkerson
DevOps Engineer
Posts: 19396
Joined: Tue Nov 15, 2011 3:11 pm
Location: Nagios Enterprises
Contact:

Re: nagios xi sql injection vulnerability CVE-2019-20139

Post by scottwilkerson »

What version of Nagios XI are you running?
Former Nagios employee
Creator:
Human Design Website
Get Your Human Design Chart
rjmon
Posts: 106
Joined: Wed Dec 06, 2017 11:39 am

Re: nagios xi sql injection vulnerability CVE-2019-20139

Post by rjmon »

5.6.12
scottwilkerson
DevOps Engineer
Posts: 19396
Joined: Tue Nov 15, 2011 3:11 pm
Location: Nagios Enterprises
Contact:

Re: nagios xi sql injection vulnerability CVE-2019-20139

Post by scottwilkerson »

You should be able to go to Admin > Manage Components
click check for updates
and the "Operations Center" component should show an update

If this doesn't work, you can download the zip below and upload at Admin > Manage Components
https://assets.nagios.com/downloads/nag ... screen.zip
Former Nagios employee
Creator:
Human Design Website
Get Your Human Design Chart
rjmon
Posts: 106
Joined: Wed Dec 06, 2017 11:39 am

Re: nagios xi sql injection vulnerability CVE-2019-20139

Post by rjmon »

Thanks. I was able to download and install them
scottwilkerson
DevOps Engineer
Posts: 19396
Joined: Tue Nov 15, 2011 3:11 pm
Location: Nagios Enterprises
Contact:

Re: nagios xi sql injection vulnerability CVE-2019-20139

Post by scottwilkerson »

rjmon wrote:Thanks. I was able to download and install them
Great

Locking thread
Former Nagios employee
Creator:
Human Design Website
Get Your Human Design Chart
Locked