EmreOvunc/Nagios-Log-Server-2.1.7-Persistent-Cross-Site-Scripting

EmreOvunc/Nagios-Log-Server-2.1.7-Persistent-Cross-Site-Scripting

Releases0
Stars3
A stored cross-site scripting (XSS) in Nagios Log Server 2.1.7 can result in an attacker performing malicious actions to users who open a maliciously crafted link or third-party web page.

CVE History

CVEPublishedCVSS v3CVSS v2
6.1 MEDIUM4.3 MEDIUM

Nagios Log Server 2.1.7 contains a cross-site scripting (XSS) vulnerability in /nagioslogserver/configure/create_snapshot through the snapshot_name parameter, which may impact users who open a maliciously crafted link or third-party web page.