Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4w2r-vx7w-6p4w

Опубликовано: 14 сент. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 3.5

Описание

An issue was discovered in Nagios XI before 5.9.3. The is_insecure_login_authenticated function uses a insecure timing comparison that leads to an attacker being able to bruteforce the admin password, by measuring timing differences in the comparison.

An issue was discovered in Nagios XI before 5.9.3. The is_insecure_login_authenticated function uses a insecure timing comparison that leads to an attacker being able to bruteforce the admin password, by measuring timing differences in the comparison.

EPSS

Процентиль: 54%
0.00767
Низкий

3.5 Low

CVSS3

Дефекты

CWE-208

Связанные уязвимости

CVSS3: 3.5
nvd
9 дней назад

An issue was discovered in Nagios XI before 5.9.3. The is_insecure_login_authenticated function uses a insecure timing comparison that leads to an attacker being able to bruteforce the admin password, by measuring timing differences in the comparison.

EPSS

Процентиль: 54%
0.00767
Низкий

3.5 Low

CVSS3

Дефекты

CWE-208