A cross-site scripting vulnerability exists in Nagios XI prior to 5.5.4 via the 'name' parameter within the Account Information page. Exploitation of this vulnerability allows an malicious user to execute arbitrary JavaScript code within the auto login admin management page.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
nagios nagios xi |