Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Nagvis MEDIUM 5.3
CVE-2025-39665

User enumeration in Nagvis' Checkmk MultisiteAuth before version 1.9.48 allows an unauthenticated attacker to enumerate Checkmk usernames.

Fix: 1.9.48+
Fix from $1,600 2025-12-03
Nagvis MEDIUM 6.1
CVE-2024-47090

Improper neutralization of input in Nagvis before version 1.9.47 which can lead to XSS

Fix: 1.9.47+
Fix from $1,600 2025-05-27
Nagvis HIGH 7.5
CVE-2024-38866

Improper neutralization of input in Nagvis before version 1.9.47 which can lead to livestatus injection

Fix: 1.9.47+
Fix from $1,950 2025-05-27
Nagvis MEDIUM 6.1
CVE-2024-47093

Improper neutralization of input in Nagvis before version 1.9.42 which can lead to XSS

Fix: 1.9.42+
Fix from $1,600 2024-12-19
Nagvis MEDIUM 6.1
CVE-2023-46287

XSS exists in NagVis before 1.9.38 via the select function in share/server/core/functions/html.php.

Fix: 1.9.38+
Fix from $1,600 2023-10-20
Nagvis MEDIUM 6.5
CVE-2022-46945

Nagvis before 1.9.34 was discovered to contain an arbitrary file read vulnerability via the component /core/classes/NagVisHoverUrl.php.

Fix: 1.9.34+
Fix from $1,600 2023-05-26
Nagvis HIGH 8.1
CVE-2022-3979

A vulnerability was found in NagVis up to 1.9.33 and classified as problematic. This issue affects the function checkAuthCookie of the file share/ser…

Fix: 1.9.34+
Fix from $1,950 2022-11-13
Nagvis MEDIUM 6.5
CVE-2021-33178

The Manage Backgrounds functionality within NagVis versions prior to 1.9.29 is vulnerable to an authenticated path traversal vulnerability. Exploitat…

Fix: 1.9.29+
Fix from $1,600 2021-10-14
Nagvis MEDIUM 6.1
CVE-2017-6393

An issue was discovered in NagVis 1.9b12. The vulnerability exists due to insufficient filtration of user-supplied data passed to the "nagvis-master/…

Patch available
Fix from $1,600 2017-03-02