First published: Thu Oct 14 2021(Updated: )
The general user interface in Nagios XI versions prior to 5.8.4 is vulnerable to authenticated reflected cross-site scripting. An authenticated victim, who accesses a specially crafted malicious URL, would unknowingly execute the attached payload.
Credit: disclosure@synopsys.com
Affected Software | Affected Version | How to fix |
---|---|---|
Nagios Nagios XI | <5.8.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-33179.
The severity of CVE-2021-33179 is medium with a severity value of 6.1.
Nagios XI versions prior to 5.8.4 are affected by CVE-2021-33179.
CVE-2021-33179 is a vulnerability in the general user interface of Nagios XI.
An authenticated victim could unknowingly execute an attached payload by accessing a specially crafted malicious URL.