Vulnerabilidades en Icinga
28 resultadosAnálisis Vexday
Icinga apresenta 28 vulnerabilidades conhecidas, com 2 críticas, mas nenhuma sob ataque ativo documentado. A fraqueza predominante é injeção de script entre sites (CWE-79), um risco moderado típico de aplicações web; o ritmo de descobertas é controlado, com apenas 1 CVE nos últimos 90 dias, sugerindo um cenário de risco estável e previsível.
CVE-2025-53840LOWIcinga DB Web Exposure of Sensitive Information to an Unauthorized Actor vulnerabilityEPSS 0.3%CVE-2026-42224HIGHipl/web is vulnerable to reflected XSS by malformed search requestsEPSS 0.3%CVE-2025-30164MEDIUMIcinga Web 2 has open redirect on login pageEPSS 0.2%CVE-2025-27609LOWIcinga Web 2 Vulnerable to Reflected XSSEPSS 0.2%CVE-2025-61909MEDIUMIcinga 2 signals sent as root to processes based on PID file written by the Icinga 2 daemon userEPSS 0.2%CVE-2024-41811LOWipl/web susceptible to Cross-Site Request Forgery (CSRF)EPSS 0.2%CVE-2026-24414MEDIUMIcinga for Windows certificate can have too-open permissionsEPSS 0.1%CVE-2026-24413MEDIUMIcinga has insecure permission of %ProgramData%\icinga2\var on WindowsEPSS 0.1%