Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-18245

Опубликовано: 17 дек. 2018
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 3.5
CVSS3: 5.4

Описание

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-apps/bionic

needed

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needs-triage]
esm-infra/focal

DNE

esm-infra/xenial

needed

focal

DNE

Показывать по

РелизСтатусПримечание
bionic

DNE

cosmic

ignored

end of life
devel

not-affected

4.3.4-3
disco

not-affected

4.3.4-3
eoan

not-affected

4.3.4-3
esm-apps/focal

not-affected

4.3.4-3
esm-apps/jammy

not-affected

4.3.4-3
esm-apps/noble

not-affected

4.3.4-3
esm-infra-legacy/trusty

DNE

focal

not-affected

4.3.4-3

Показывать по

EPSS

Процентиль: 90%
0.0531
Низкий

3.5 Low

CVSS2

5.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
redhat
около 7 лет назад

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.

CVSS3: 5.4
nvd
около 7 лет назад

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.

CVSS3: 5.4
debian
около 7 лет назад

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin resu ...

CVSS3: 5.4
github
больше 3 лет назад

Nagios Core 4.4.2 has XSS via the alert summary reports of plugin results, as demonstrated by a SCRIPT element delivered by a modified check_load plugin to NRPE.

suse-cvrf
почти 6 лет назад

Security update for nagios

EPSS

Процентиль: 90%
0.0531
Низкий

3.5 Low

CVSS2

5.4 Medium

CVSS3