Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-18245

Опубликовано: 12 дек. 2018
Источник: redhat
CVSS3: 4.7
EPSS Низкий

Описание

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Mobile Application Platform 4nagiosOut of support scope
Red Hat Storage 3nagiosAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-79
https://bugzilla.redhat.com/show_bug.cgi?id=1661478nagios: Stored XSS via Plugin Output

EPSS

Процентиль: 90%
0.0531
Низкий

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
ubuntu
около 7 лет назад

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.

CVSS3: 5.4
nvd
около 7 лет назад

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.

CVSS3: 5.4
debian
около 7 лет назад

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin resu ...

CVSS3: 5.4
github
больше 3 лет назад

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.

suse-cvrf
почти 6 лет назад

Security update for nagios

EPSS

Процентиль: 90%
0.0531
Низкий

4.7 Medium

CVSS3