Medium severity6.1NVD Advisory· Published Jan 20, 2021· Updated Jun 17, 2026
CVE-2020-25385
CVE-2020-25385
Description
Nagios Log Server 2.1.7 contains a cross-site scripting (XSS) vulnerability in /nagioslogserver/configure/create_snapshot through the snapshot_name parameter, which may impact users who open a maliciously crafted link or third-party web page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:nagios:log_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:nagios:log_server:*:*:*:*:*:*:*:*range: <=2.1.7
- (no CPE)range: =2.1.7
- Nagios Log Server/Nagios Log Serverdescription
- Range: =2.1.7
Patches
Vulnerability mechanics
News mentions
0No linked articles in our index yet.