Vulnerabilities (CVE)

Filtered by vendor Nagios Subscribe
Filtered by product Log Server
Total 23 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-16157 1 Nagios 1 Log Server 2026-06-17 3.5 LOW 5.4 MEDIUM
A Stored XSS vulnerability exists in Nagios Log Server before 2.1.7 via the Notification Methods -> Email Users menu.
CVE-2019-15898 1 Nagios 1 Log Server 2026-06-17 4.3 MEDIUM 6.1 MEDIUM
Nagios Log Server before 2.0.8 allows Reflected XSS via the username on the Login page.
CVE-2016-15049 1 Nagios 1 Log Server 2026-06-17 N/A 5.4 MEDIUM
Nagios Log Server versions prior to 1.4.2 are vulnerable to cross-site scripting (XSS) in the Dashboards section when rendering log entries in the Logs table. Untrusted log content was not safely encoded for the output context, allowing attacker-controlled data present in logs to execute script in the victim’s browser within the application origin.