Vulnerabilities > Nagios > Business Process Intelligence

DATE CVE VULNERABILITY TITLE RISK
2018-02-06 CVE-2015-3618 Cross-site Scripting vulnerability in Nagios Business Process Intelligence
Cross-site scripting (XSS) vulnerability in Nagios Business Process Intelligence (BPI) before 2.3.4 allows remote attackers to inject arbitrary web script or HTML via vectors involving index.php.
network
low complexity
nagios CWE-79
6.1