CNNVD-202510-4085 Information

CNNVD ID

CNNVD-202510-4085

CVE-2025-34278

  • CNNVD Published: 2025-10-30

Description (Chinese)

Nagios Network Analyzer是Nagios公司的一款用于监控和分析网络流量的企业级解决方案。 Nagios Network Analyzer 2024R1之前版本存在安全漏洞,该漏洞源于Source Groups页面存储型跨站脚本漏洞,可能导致恶意脚本在其他用户浏览器环境中执行。

Description (English)

Nagios Network Analyzer is an enterprise-level solution by Nagios to monitor and analyse network traffic. The previous version of Nagios Network Analyzer 2024R1 had a security loophole, which originated from the Source Groups cross-site script gap that could lead to malicious scripts being executed in other user browser environments.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Nagios

Published

2025-10-30

Last Modified

2026-02-24

References

https://www.nagios.com/changelog/#network-analyzer https://www.nagios.com/products/security/#network-analyzer https://www.vulncheck.com/advisories/nagios-network-analyzer-source-groups-percentile-calculator-menu-stored-xss

Patch

https://www.nagios.com/products/security/#network-analyzer

Share on: