Логотип exploitDog
bind:CVE-2025-60425
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-60425

Количество 2

Количество 2

nvd логотип

CVE-2025-60425

3 месяца назад

Nagios Fusion v2024R1.2 and v2024R2 does not invalidate already existing session tokens when the two-factor authentication mechanism is enabled, allowing attackers to perform a session hijacking attack.

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-5w58-vmv5-p957

3 месяца назад

Nagios Fusion v2024R1.2 and v2024R2 does not invalidate already existing session tokens when the two-factor authentication mechanism is enabled, allowing attackers to perform a session hijacking attack.

CVSS3: 8.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-60425

Nagios Fusion v2024R1.2 and v2024R2 does not invalidate already existing session tokens when the two-factor authentication mechanism is enabled, allowing attackers to perform a session hijacking attack.

CVSS3: 8.6
2%
Низкий
3 месяца назад
github логотип
GHSA-5w58-vmv5-p957

Nagios Fusion v2024R1.2 and v2024R2 does not invalidate already existing session tokens when the two-factor authentication mechanism is enabled, allowing attackers to perform a session hijacking attack.

CVSS3: 8.6
2%
Низкий
3 месяца назад

Уязвимостей на страницу