First published: Mon Nov 16 2020(Updated: )
Nagios XI before 5.7.5 is vulnerable to XSS in Manage Users (Username field).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nagios | <5.7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-27988 has been classified as a medium-severity vulnerability due to the potential for cross-site scripting (XSS) attacks.
To mitigate CVE-2020-27988, you should update Nagios XI to version 5.7.5 or higher.
CVE-2020-27988 is a cross-site scripting (XSS) vulnerability affecting the Manage Users feature in Nagios XI.
CVE-2020-27988 affects all versions of Nagios XI prior to 5.7.5.
Yes, CVE-2020-27988 can lead to potential data compromise through XSS if exploited by an attacker.