Page 1 of 1

Nagios XI vulnerabilities

Posted: Tue Jun 29, 2021 4:28 am
HI,

please provide the solutions for below vulnerabilities.

EOL/Obsolete Software: jQuery 1.x and 2.x Detected
jQuery Prior to 3.4.0 Cross-Site Scripting Vulnerability
jQuery Prior to 3.5.0 Cross-Site Scripting Vulnerability
jQuery Cross-Site Scripting Vulnerability
Web Server Stopped Responding
Possible Scan Interference
TCP Sequence Number Approximation Based Denial of Service

Using NagiosXI Latest Version.

Re: Nagios XI vulnerabilities

Posted: Tue Jun 29, 2021 8:01 am
by mcapra
You'll probably want to provide the specific CVE IDs.

Re: Nagios XI vulnerabilities

Posted: Tue Jun 29, 2021 1:39 pm
by benjaminsmith
Hi,

You'll find a complete listing of disclosed vulnerabilities in Nagiso XI on our Security Page at:

https://www.nagios.com/products/security/

For the jQuery-related questions, the latest version is running version 3.6 (the latest stable version). We do use an older version locally for generating reports, but this is not used within the GUI.
5.8.3 - 03/31/2021
==================
- Updated jQuery to version 3.6.0 to fix minor issues -JO
Let us know if you have more questions.

Regards,
Benjamin