Nagios XI Vulnerability Allows Unauthenticated Users to View Other User Details & Email
A significant security vulnerability (CVE-2024-54961) has been identified in Nagios XI 2024R1.2.2, enabling unauthenticated attackers to retrieve sensitive user information, including usernames and email addresses. This flaw, classified as an information disclosure vulnerability (CWE-200), exposes organizational user directories to potential misuse in phishing campaigns or credential-stuffing attacks. Nagios XI Vulnerability The vulnerability resides in improper […]
The post Nagios XI Vulnerability Allows Unauthenticated Users to View Other User Details & Email appeared first on Cyber Security News.