Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-90909
HistoryOct 15, 2021 - 12:00 a.m.

Nagios XI Cross-Site Scripting Vulnerability (CNVD-2021-90909)

2021-10-1500:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
nagios
cross-site scripting
vulnerability
user interface
javascript
exploit
url

EPSS

0.004

Percentile

73.5%

Nagios XI is a commercial monitoring solution built on Nagios Core, including dashboards, web-based configuration, advanced reporting, and rich data visualization.A reflective cross-site scripting vulnerability exists in the generic user interface of versions of Nagios XI prior to 5.8.4. An attacker could exploit the vulnerability to execute arbitrary JavaScript code by tricking a user into visiting a specially crafted URL.

EPSS

0.004

Percentile

73.5%

Related for CNVD-2021-90909