← Voltar para CVEs
CVE-2014-4907
N/ADescricao
Cross-site scripting (XSS) vulnerability in share/pnp/application/views/kohana_error_page.php in PNP4Nagios before 0.6.22 allows remote attackers to inject arbitrary web script or HTML via a parameter that is not properly handled in an error message.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado7/11/2014
Ultima modificacao4/12/2025
Fontenvd
Avistamentos honeypot0
Produtos afetados
op5:monitorpnp4nagios:pnp4nagios
Fraquezas (CWE)
CWE-79
Referencias
http://docs.pnp4nagios.org/pnp-0.6/dwnld(cve@mitre.org)
http://openwall.com/lists/oss-security/2014/07/11/3(cve@mitre.org)
http://secunia.com/advisories/59535(cve@mitre.org)
http://secunia.com/advisories/59603(cve@mitre.org)
http://www.op5.com/blog/news/op5-monitor-6-3-1-release-notes(cve@mitre.org)
http://www.securityfocus.com/bid/68350(cve@mitre.org)
https://bugs.op5.com/view.php?id=8761(cve@mitre.org)
http://docs.pnp4nagios.org/pnp-0.6/dwnld(af854a3a-2127-422b-91ae-364da2661108)
http://openwall.com/lists/oss-security/2014/07/11/3(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/59535(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/59603(af854a3a-2127-422b-91ae-364da2661108)
http://sourceforge.net/p/pnp4nagios/code/ci/f846a6c9d007ca2bee05359af747619151195fc9(af854a3a-2127-422b-91ae-364da2661108)
http://www.op5.com/blog/news/op5-monitor-6-3-1-release-notes(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/68350(af854a3a-2127-422b-91ae-364da2661108)
https://bugs.op5.com/view.php?id=8761(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.