Cross-Site Scripting Vulnerabilities in Icinga Versions Prior to 1.4.1
Icinga is an open source, enterprise-level network monitoring system.
Affected Application: Icinga versions prior to 1.4.1.
Issue: On 06/16/11, multiple cross-site scripting vulnerabilities were reported for Icinga through version 1.4.0. The vulnerabilities let attackers execute scripts to steal cookies, gain unauthorized access, redirect visitors or perform other malicious actions.
Resolution: Icinga 1.4.1 is available. For more information, visit the vendor's website: https://www.icinga.org/.
This information was compiled using information in the National Vulnerability Database. For more information about this issue, see the summary for CVE-2011-2477. To learn more about cross-site scripting vulnerabilities, see Cross-Site Scripting.
Website Protection Site Scanner scans for this vulnerability, and many more. To learn about Site Scanner, see Getting Started with Website Protection Site Scanner.