CVE-2024-54961

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Feb 20, 2025
CWE ID 200

Summary

CVE-2024-54961 is a newly disclosed vulnerability affecting Nagios XI 2024R1.2.2. This issue involves an Information Disclosure flaw, enabling unauthenticated users to gain access to multiple pages containing sensitive data. The affected pages reveal the usernames and email addresses of all current users, posing a potential risk to privacy and security. It is crucial for Nagios XI users to update their systems promptly to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Nagios Core

Affected Vendors

  • Nagios Enterprises LLC