Количество 3
Количество 3
CVE-2023-40932
A Cross-site scripting (XSS) vulnerability in Nagios XI version 5.11.1 and below allows authenticated attackers with access to the custom logo component to inject arbitrary javascript or HTML via the alt-text field. This affects all pages containing the navbar including the login page which means the attacker is able to to steal plaintext credentials.
GHSA-545q-9j8x-q2gf
A Cross-site scripting (XSS) vulnerability in Nagios XI version 5.11.1 and below allows authenticated attackers with access to the custom logo component to inject arbitrary javascript or HTML via the alt-text field. This affects all pages containing the navbar including the login page which means the attacker is able to to steal plaintext credentials.
BDU:2023-06150
Уязвимость компонента Custom Logo («Пользовательский логотип») инструмента для мониторинга Nagios XI, позволяющая нарушителю проводить межсайтовые сценарные атаки
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-40932 A Cross-site scripting (XSS) vulnerability in Nagios XI version 5.11.1 and below allows authenticated attackers with access to the custom logo component to inject arbitrary javascript or HTML via the alt-text field. This affects all pages containing the navbar including the login page which means the attacker is able to to steal plaintext credentials. | CVSS3: 5.4 | 2% Низкий | больше 2 лет назад | |
GHSA-545q-9j8x-q2gf A Cross-site scripting (XSS) vulnerability in Nagios XI version 5.11.1 and below allows authenticated attackers with access to the custom logo component to inject arbitrary javascript or HTML via the alt-text field. This affects all pages containing the navbar including the login page which means the attacker is able to to steal plaintext credentials. | CVSS3: 5.4 | 2% Низкий | больше 2 лет назад | |
BDU:2023-06150 Уязвимость компонента Custom Logo («Пользовательский логотип») инструмента для мониторинга Nagios XI, позволяющая нарушителю проводить межсайтовые сценарные атаки | CVSS3: 5.4 | 2% Низкий | больше 2 лет назад |
Уязвимостей на страницу