CVE-2024-54961
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Feb 20, 2025
CWE ID 200
Summary
CVE-2024-54961 is a newly disclosed vulnerability affecting Nagios XI 2024R1.2.2. This issue involves an Information Disclosure flaw, enabling unauthenticated users to gain access to multiple pages containing sensitive data. The affected pages reveal the usernames and email addresses of all current users, posing a potential risk to privacy and security. It is crucial for Nagios XI users to update their systems promptly to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Nagios Core
Affected Vendors
- Nagios Enterprises LLC