PT-2022-24311 · Mtr+1 · Mtr+1

Published

2022-09-07

·

Updated

2022-09-09

·

CVE-2022-38249

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Nagios XI version 5.8.6 MTR component version 1.0.4
Description A cross-site scripting (XSS) issue was found in Nagios XI via the MTR component. This allows for potential malicious script execution.
Recommendations For Nagios XI version 5.8.6, update the MTR component to a version later than 1.0.4 to resolve the issue. For MTR component version 1.0.4, consider disabling the component until a patch is available.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-38249

Affected Products

Mtr
Nagios Xi