5.1

CVSS4.0

CVE-2016-15051 - Nagios XI < 5.2.4 XSS via Report startdate/enddate Fields

Nagios XI versions prior to 5.2.4 are vulnerable to cross-site scripting (XSS) via the Reports interface through values from the startdate and enddate fields. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a …

📅 Published: Oct. 30, 2025, 9:55 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2011-10038 - Nagios XI < 2011R1.9 XSS via Recurring Downtime Script

Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the recurring downtime script of the web interface. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:55 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2021-47695 - Nagios XI < 5.8.0 XSS via My Tools Page

Nagios XI versions prior to 5.8.0 are vulnerable to stored cross-site scripting (XSS) via the My Tools page. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:54 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2016-15053 - Nagios XI < 5.2.4 XSS via “My Reports” Listing

Nagios XI versions prior to 5.2.4 are vulnerable to cross-site scripting (XSS) via the “My Reports” listing of the web interface. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:54 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2016-15052 - Nagios XI < 5.2.4 XSS via Menu System

Nagios XI versions prior to 5.2.4 are vulnerable to cross-site scripting (XSS) via the Menu System of the web interface. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:54 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2020-36866 - Nagios XI < 5.7.3 XSS via Manage Users in Admin Interface

Nagios XI versions prior to 5.7.3 are vulnerable to cross-site scripting (XSS) via the Manage Users page of the Admin interface. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:53 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2023-7316 - Nagios XI < 2024R1 XSS via Graph Explorer

Nagios XI versions prior to 2024R1 are vulnerable to cross-site scripting (XSS) via the Graph Explorer component. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:52 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2023-7315 - Nagios XI < 5.11.3 XSS via Graph Explorer

Nagios XI versions prior to 5.11.3 are vulnerable to cross-site scripting (XSS) via the Graph Explorer component. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:52 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2024-14001 - Nagios XI < 2024R1.1.3 XSS via Executive Summary Report

Nagios XI versions prior to 2024R1.1.3 are vulnerable to cross-site scripting (XSS) via the Executive Summary Report component. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:52 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

5.1

CVSS4.0

CVE-2020-36864 - Nagios XI < 5.7.2 XSS via Dashboard Background Color Setting

Nagios XI versions prior to 5.7.2 are vulnerable to cross-site scripting (XSS) via the background color settings in Dashboards. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

📅 Published: Oct. 30, 2025, 9:51 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.
Total resulsts: 349182
Page 3199 of 34,919
« previous page » next page
Filters