Nagios XI
cpe:2.3:a:nagios:nagios_xi:*:*:*:*:*:*:*
- 2024R1.2.2
A vulnerability in Nagios XI version 2024R1.2.2 allows unauthenticated users to access multiple pages that reveal the usernames and email addresses of all current users. This information disclosure can facilitate reconnaissance efforts, potentially leading to phishing attacks or further exploitation.
Exploitation of this vulnerability could result in unauthorized access to user information, including usernames and email addresses, which could be used for phishing attacks or other malicious activities.
Users are advised to update to the latest version of Nagios XI.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.