Vulnerabilities (CVE)

Filtered by vendor Nagvis Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-33178 1 Nagvis 1 Nagvis 2022-04-29 8.5 HIGH 6.5 MEDIUM
The Manage Backgrounds functionality within NagVis versions prior to 1.9.29 is vulnerable to an authenticated path traversal vulnerability. Exploitation of this results in a malicious actor having the ability to arbitrarily delete files on the local system.
CVE-2017-6393 1 Nagvis 1 Nagvis 2017-03-07 4.3 MEDIUM 6.1 MEDIUM
An issue was discovered in NagVis 1.9b12. The vulnerability exists due to insufficient filtration of user-supplied data passed to the "nagvis-master/share/userfiles/gadgets/std_table.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.