VYPR
Medium severity6.1NVD Advisory· Published Feb 20, 2025· Updated Jun 17, 2026

CVE-2024-54958

CVE-2024-54958

Description

Nagios XI 2024R1.2.2 is susceptible to a stored Cross-Site Scripting (XSS) vulnerability in the Tools page. This flaw allows an attacker to inject malicious scripts into the Tools interface, which are then stored and executed in the context of other users accessing the page.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Nagios/XI2 versions
    cpe:2.3:a:nagios:nagios_xi:2024:r1.2.2:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:nagios:nagios_xi:2024:r1.2.2:*:*:*:*:*:*
    • (no CPE)range: 2024R1.2.2
  • Nagios/Nagioscpe-rescue

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.