Improper neutralization of input in Nagvis before version 1.9.42 which can lead to XSS
History

Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00076}

epss

{'score': 0.00086}


Thu, 19 Dec 2024 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 19 Dec 2024 14:30:00 +0000

Type Values Removed Values Added
Description Improper neutralization of input in Nagvis before version 1.9.42 which can lead to XSS
Title Fix various XSS issues and potential RCE
Weaknesses CWE-79
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Checkmk

Published: 2024-12-19T14:08:44.081Z

Updated: 2024-12-19T14:55:46.436Z

Reserved: 2024-09-18T11:38:53.583Z

Link: CVE-2024-47093

cve-icon Vulnrichment

Updated: 2024-12-19T14:55:39.293Z

cve-icon NVD

Status : Received

Published: 2024-12-19T15:15:07.250

Modified: 2024-12-19T15:15:07.250

Link: CVE-2024-47093

cve-icon Redhat

No data.