First published: Sun Mar 22 2020(Updated: )
Nagios XI 5.6.11 allows XSS via the includes/components/ldap_ad_integration/ username parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nagios Nagios XI | =5.6.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-10819 is medium with a CVSS score of 4.8.
CVE-2020-10819 affects Nagios XI version 5.6.11.
CVE-2020-10819 is classified as a Cross-Site Scripting (XSS) vulnerability.
An attacker can exploit CVE-2020-10819 by injecting malicious code through the username parameter in the ldap_ad_integration component.
Yes, upgrading Nagios XI to a version beyond 5.6.11 will fix CVE-2020-10819.