Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-4459 | Nagios XI 2024R1.2.2 is vulnerable to a Cross-Site Request Forgery (CSRF) attack through the Favorites component, enabling POST-based Cross-Site Scripting (XSS). |
| Link | Providers |
|---|---|
| https://github.com/Sharpe-nl/CVEs/tree/main/CVE-2024-54959 |
|
Tue, 01 Jul 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nagios
Nagios nagios Xi |
|
| CPEs | cpe:2.3:a:nagios:nagios_xi:2024:r1.2.2:*:*:*:*:*:* | |
| Vendors & Products |
Nagios
Nagios nagios Xi |
Fri, 21 Feb 2025 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Thu, 20 Feb 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Nagios XI 2024R1.2.2 is vulnerable to a Cross-Site Request Forgery (CSRF) attack through the Favorites component, enabling POST-based Cross-Site Scripting (XSS). | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-21T21:29:56.876Z
Reserved: 2024-12-06T00:00:00.000Z
Link: CVE-2024-54959
Updated: 2025-02-21T20:05:56.416Z
Status : Analyzed
Published: 2025-02-20T18:15:25.317
Modified: 2025-07-01T15:02:21.177
Link: CVE-2024-54959
No data.
OpenCVE Enrichment
No data.
EUVD