Medium severity5.4NVD Advisory· Published Dec 30, 2019· Updated Jun 17, 2026
CVE-2019-20139
CVE-2019-20139
Description
In Nagios XI 5.6.9, XSS exists via the nocscreenapi.php host, hostgroup, or servicegroup parameter, or the schedulereport.php hour or frequency parameter. Any authenticated user can attack the admin user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Nagios/XIdescription
Patches
Vulnerability mechanics
References
1- code610.blogspot.com/2019/12/multiple-xss-bugs-in-nagios-569.htmlnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.