Search found 24 matches

by essrichard
Thu Dec 10, 2015 6:22 pm
Forum: Nagios XI
Topic: New security Vulnerabilities
Replies: 17
Views: 2119

Re: New security Vulnerabilities

Yes, i think we are good for this quarter. Thanks!
by essrichard
Thu Dec 10, 2015 5:11 pm
Forum: Nagios XI
Topic: New security Vulnerabilities
Replies: 17
Views: 2119

Re: New security Vulnerabilities

This is great - thanks again for all the help.
by essrichard
Thu Dec 10, 2015 4:37 pm
Forum: Nagios XI
Topic: New security Vulnerabilities
Replies: 17
Views: 2119

Re: New security Vulnerabilities

Okay we went ahead and updated to 5.2.3 and rescanned. As you predicted, Nessus is still complaining about the clickjacking, so is there a more official response we can get from you giving the reason why this particular detection is now a false positive in addition to "Fixed possible clickjacki...
by essrichard
Tue Dec 08, 2015 12:10 pm
Forum: Nagios XI
Topic: New security Vulnerabilities
Replies: 17
Views: 2119

Re: New security Vulnerabilities

I see there is a new update available now, 5.2.3 - is this the one that should address these issues? I am having trouble finding any kind of release notes for the new version - are those posted anywhere for users to review?
by essrichard
Thu Dec 03, 2015 11:55 am
Forum: Nagios XI
Topic: New security Vulnerabilities
Replies: 17
Views: 2119

Re: New security Vulnerabilities

So from what you can see, all four vulnerabilities should be addressed in the next release? When can we expect it to be available for us to update our Nagios XI server?
by essrichard
Wed Nov 25, 2015 3:52 pm
Forum: Nagios XI
Topic: New security Vulnerabilities
Replies: 17
Views: 2119

Re: New security Vulnerabilities

Will you be able to get these items addressed by next week?
by essrichard
Wed Nov 25, 2015 12:02 pm
Forum: Nagios XI
Topic: New security Vulnerabilities
Replies: 17
Views: 2119

Re: New security Vulnerabilities

The full details have been uploaded to a spreadsheet here for you to download: https://extraspacestorage.box.com/nagiosxi You can find the specific pages and items in question under the "Plugin output" column "Potentially Vulnerable" is still a medium priority item and still need...
by essrichard
Wed Nov 25, 2015 9:36 am
Forum: Nagios XI
Topic: Cross-Frame Scripting
Replies: 3
Views: 378

Re: Cross-Frame Scripting

We have found similar issues on our Nagios XI as well. I would be glad to provide the detailed report of our scan, but i am not allowed to upload excel documents. How can i get this to you for review? I posted some basics on other vulnerabilities as well here: https://support.nagios.com/forum/viewto...
by essrichard
Tue Nov 24, 2015 3:59 pm
Forum: Nagios XI
Topic: New security Vulnerabilities
Replies: 17
Views: 2119

New security Vulnerabilities

In our quarterly Nessus Vulnerability scan which is required by PCI, our new Nagios XI server was found with several security vulnerabilities. All of these vulnerabilities are showing to be on TCP port 443 of our Nagios XI server. We have already updated to Nagios XI 5.2.2. 1. CGI Generic Cookie Inj...
by essrichard
Fri Oct 30, 2015 11:35 am
Forum: Nagios XI
Topic: NRDS does not report CPU utililzation
Replies: 15
Views: 1704

Re: NRDS does not report CPU utililzation

Okay i wanted to post a workaround to this issue for the benefit of others. It is only a workaround basically because check_pdm.exe simply fails to grab CPU usage, so instead I have found a way to do it with a powershell script. With NRDS, you can put any new .ps1 or .vbs scripts on your Nagios XI s...