First published: Tue Sep 03 2019(Updated: )
Nagios Log Server before 2.0.8 allows Reflected XSS via the username on the Login page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nagios Log Server | <2.0.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-15898 is a vulnerability in Nagios Log Server that allows Reflected XSS via the username on the Login page.
Nagios Log Server versions up to and exclusively 2.0.8 are affected by CVE-2019-15898.
CVE-2019-15898 has a severity level of medium with a CVSS score of 6.1.
To fix CVE-2019-15898, you should upgrade your Nagios Log Server to version 2.0.8 or later.
The CWE ID for CVE-2019-15898 is CWE-79.