Nagios Log Server before 2.0.8 allows Reflected XSS via the username on the Login page.
2019-09-03T22:15:11.030
2024-11-21T04:29:41.597
Modified
CVSSv3.0: 6.1 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | nagios | log_server | < 2.0.8 | Yes |