← Back to CVEs
CVE-2014-4907
N/ADescription
Cross-site scripting (XSS) vulnerability in share/pnp/application/views/kohana_error_page.php in PNP4Nagios before 0.6.22 allows remote attackers to inject arbitrary web script or HTML via a parameter that is not properly handled in an error message.
CVE Details
CVSS v3.1 ScoreN/A
Published7/11/2014
Last Modified4/12/2025
Sourcenvd
Honeypot Sightings0
Affected Products
op5:monitorpnp4nagios:pnp4nagios
Weaknesses (CWE)
CWE-79
References
http://docs.pnp4nagios.org/pnp-0.6/dwnld(cve@mitre.org)
http://openwall.com/lists/oss-security/2014/07/11/3(cve@mitre.org)
http://secunia.com/advisories/59535(cve@mitre.org)
http://secunia.com/advisories/59603(cve@mitre.org)
http://www.op5.com/blog/news/op5-monitor-6-3-1-release-notes(cve@mitre.org)
http://www.securityfocus.com/bid/68350(cve@mitre.org)
https://bugs.op5.com/view.php?id=8761(cve@mitre.org)
http://docs.pnp4nagios.org/pnp-0.6/dwnld(af854a3a-2127-422b-91ae-364da2661108)
http://openwall.com/lists/oss-security/2014/07/11/3(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/59535(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/59603(af854a3a-2127-422b-91ae-364da2661108)
http://sourceforge.net/p/pnp4nagios/code/ci/f846a6c9d007ca2bee05359af747619151195fc9(af854a3a-2127-422b-91ae-364da2661108)
http://www.op5.com/blog/news/op5-monitor-6-3-1-release-notes(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/68350(af854a3a-2127-422b-91ae-364da2661108)
https://bugs.op5.com/view.php?id=8761(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.