FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-12-20 14:15:46 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
fbd7aa81-2cc1-11dd-8cfb-00e0815b8da8Nagios -- Cross Site Scripting Vulnerability

Secunia reports:

A vulnerability has been reported in Nagios, which can be exploited by malicious people to conduct cross-site scripting attacks.


Discovery 2008-05-20
Entry 2008-05-28
Modified 2008-09-08
nagios
< 2.12

> 3.* lt 3.0.2

nagios-devel
< 3.0.2

29140
CVE-2007-5803
http://secunia.com/advisories/30283
3ebd4cb5-657f-11de-883a-00e0815b8da8nagios -- Command Injection Vulnerability

Secunia reports:

A vulnerability has been reported in Nagios, which can be exploited by malicious users to potentially compromise a vulnerable system.

Input passed to the "ping" parameter in statuswml.cgi is not properly sanitised before being used to invoke the ping command. This can be exploited to inject and execute arbitrary shell commands.

Successful exploitation requires access to the ping feature of the WAP interface.


Discovery 2009-05-29
Entry 2009-06-30
Modified 2009-07-13
nagios
<= 3.0.6_1

nagios2
<= 2.12_3

nagios-devel
<= 3.1.0_1

CVE-2009-2288
http://secunia.com/advisories/35543
http://tracker.nagios.org/view.php?id=15