First published: Sat Jul 15 2023(Updated: )
PNP4Nagios through 81ebfc5 has stored XSS in the AJAX controller via the basket API and filters. This affects 0.6.26.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PNP4Nagios | =0.6.26 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-38350 is classified as a stored XSS vulnerability, which poses a serious security risk.
To fix CVE-2023-38350, it is recommended to update PNP4Nagios to the latest version that addresses the vulnerability.
CVE-2023-38350 affects PNP4Nagios version 0.6.26.
CVE-2023-38350 is a stored cross-site scripting (XSS) vulnerability in the AJAX controller via the basket API.
Yes, CVE-2023-38350 can potentially allow attackers to execute malicious scripts in the context of the user’s session.