PublicDate: 2007-10-23 16:46:00 UTC Candidate: CVE-2007-5624 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5803 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5624 Description: Cross-site scripting (XSS) vulnerability in Nagios 2.x before 2.10 allows remote attackers to inject arbitrary web script or HTML via unknown vectors to unspecified CGI scripts. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_nagios2: upstream_nagios2: released (2.10-1) dapper_nagios2: DNE feisty_nagios2: needed (reached end-of-life) gutsy_nagios2: needed (reached end-of-life) hardy_nagios2: released (2.11-1ubuntu1) intrepid_nagios2: DNE devel_nagios2: DNE Patches_nagios3: upstream_nagios3: not-affected (3.0.2-1) dapper_nagios3: DNE feisty_nagios3: DNE gutsy_nagios3: DNE hardy_nagios3: DNE intrepid_nagios3: not-affected (3.0.2-1) devel_nagios3: not-affected (3.0.2-1)