CVE-2014-4907
PNP4Nagios <0.6.22 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in share/pnp/application/views/kohana_error_page.php in PNP4Nagios before 0.6.22 allows remote attackers to inject arbitrary web script or HTML via a parameter that is not properly handled in an error message.
References (8)
Scores
EPSS
0.0043
EPSS Percentile
62.3%
Details
CWE
CWE-79
Status
published
Products (22)
op5/monitor
pnp4nagios/pnp4nagios
< 0.6.21
pnp4nagios/pnp4nagios
pnp4nagios/pnp4nagios
pnp4nagios/pnp4nagios
pnp4nagios/pnp4nagios
pnp4nagios/pnp4nagios
pnp4nagios/pnp4nagios
pnp4nagios/pnp4nagios
pnp4nagios/pnp4nagios
... and 12 more
Published
Jul 11, 2014
Tracked Since
Feb 18, 2026