CVE-2021-33179: XSS
Published Oct 14, 2021
·Updated
The general user interface in Nagios XI versions prior to 5.8.4 is vulnerable to authenticated reflected cross-site scripting. An authenticated victim, who accesses a specially crafted malicious URL, would unknowingly execute the attached payload.
Affected Software
1 affected component
Nagios Nagios XI<5.8.4
Event History
Oct 14, 2021
CVE Published
via MITRE·02:57 PM
Data Sourced
via MITRE·02:57 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-33179.
2
What is the severity of CVE-2021-33179?
The severity of CVE-2021-33179 is medium with a severity value of 6.1.
3
What software versions are affected by CVE-2021-33179?
Nagios XI versions prior to 5.8.4 are affected by CVE-2021-33179.
4
What is the type of vulnerability in CVE-2021-33179?
CVE-2021-33179 is a vulnerability in the general user interface of Nagios XI.
5
How can the authenticated reflected cross-site scripting vulnerability in CVE-2021-33179 be exploited?
An authenticated victim could unknowingly execute an attached payload by accessing a specially crafted malicious URL.