Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g974-9xcc-jjmh

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Nagios Log Server 2.1.7 contains a cross-site scripting (XSS) vulnerability in /nagioslogserver/configure/create_snapshot through the snapshot_name parameter, which may impact users who open a maliciously crafted link or third-party web page.

Nagios Log Server 2.1.7 contains a cross-site scripting (XSS) vulnerability in /nagioslogserver/configure/create_snapshot through the snapshot_name parameter, which may impact users who open a maliciously crafted link or third-party web page.

EPSS

Процентиль: 97%
0.36892
Средний

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 5 лет назад

Nagios Log Server 2.1.7 contains a cross-site scripting (XSS) vulnerability in /nagioslogserver/configure/create_snapshot through the snapshot_name parameter, which may impact users who open a maliciously crafted link or third-party web page.

EPSS

Процентиль: 97%
0.36892
Средний

Дефекты

CWE-79