PNP4NAGIOS
2 CVEs tracked since 2014. Since Jul 2014, none of them reached CISA KEV.
PNP4NAGIOS CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2014-07 | 2 | 0 |
Products
The products that kept showing up in PNP4NAGIOS's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 6 most recently published vulnerabilities affecting PNP4NAGIOS.
- CVE-2023-38350PNP4Nagios through 81ebfc5 has stored XSS in the AJAX controller via the basket API and filters. This affects 0.6.26.5.4
- CVE-2023-38349PNP4Nagios through 81ebfc5 lacks CSRF protection in the AJAX controller. This affects 0.6.26.8.8
- CVE-2017-16834PNP4Nagios through 0.6.26 has /usr/bin/npcd and npcd.cfg owned by an unprivileged account but root code execution depends on these files, which allows local users to gain privileges by leveraging a...7.8
- CVE-2014-4908Multiple cross-site scripting (XSS) vulnerabilities in PNP4Nagios through 0.6.22 allow remote attackers to inject arbitrary web script or HTML via the URI used for reaching (1) share/pnp/applicatio...4.3
- CVE-2014-4907Cross-site scripting (XSS) vulnerability in share/pnp/application/views/kohana_error_page.php in PNP4Nagios before 0.6.22 allows remote attackers to inject arbitrary web script or HTML via a parame...4.3
- CVE-2012-3457PNP4Nagios 0.6 through 0.6.16 uses world-readable permissions for process_perfdata.cfg, which allows local users to obtain the Gearman shared secret by reading the file.2.1
The record
- Peak rank
- #80 in Jul 2014
- Busiest month shown
- Jul 2014, 2 CVEs
- Months with a KEV entry
- 0 since Jul 2014
- Monthly snapshots
- 1 since 2014