Cross-Site Scripting Vulnerability in Nagios XI Web Interface
CVE-2011-10038 
5.1MEDIUM
What is CVE-2011-10038?
Nagios XI versions prior to 2011R1.9 have a security issue that allows cross-site scripting (XSS) through the recurring downtime script within the web interface. This vulnerability arises from inadequate validation or escaping of user-provided input, which can enable an adversary to inject and execute arbitrary scripts in the victim's browser, potentially compromising user data and session integrity.
Affected Version(s)
XI 0 < 2011R1.9
