CVE-2022-29269: XSS
Published Jun 29, 2022
·Updated
In Nagios XI through 5.8.5, in the schedule report function, an authenticated attacker is able to inject HTML tags that lead to the reformatting/editing of emails from an official email address.
Affected Software
1 affected component
Nagios Nagios XI<=5.8.5
Event History
Jun 29, 2022
CVE Published
via MITRE·12:58 AM
Data Sourced
via MITRE·12:58 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this Nagios XI vulnerability?
The vulnerability ID for this Nagios XI vulnerability is CVE-2022-29269.
2
What is the severity rating for CVE-2022-29269?
CVE-2022-29269 has a severity rating of 6.5 (medium).
3
What is the description of CVE-2022-29269?
CVE-2022-29269 is a vulnerability in Nagios XI through 5.8.5 that allows an authenticated attacker to inject HTML tags that lead to the reformatting/editing of emails from an official email address.
4
How does CVE-2022-29269 affect Nagios XI?
CVE-2022-29269 affects Nagios XI through version 5.8.5.
5
Is there a fix available for CVE-2022-29269?
Yes, there are fixes available for CVE-2022-29269. Please refer to the references provided for more information.