In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsThere is no fixed version for Debian:11
nagvis
.
Note: Versions mentioned in the description apply only to the upstream nagvis
package and not the nagvis
package as distributed by Debian
.
See How to fix?
for Debian:11
relevant fixed versions and status.
The "NagVis" component within Checkmk is vulnerable to reflected cross-site scripting. An attacker can craft a malicious link that will execute arbitrary JavaScript in the context of the browser once clicked. The attack can be performed on both authenticated and unauthenticated users.