Sploitus

CVE-2018-18248

No indexed exploits for CVE-2018-18248 yet

Icinga Web 2 has XSS via the /icingaweb2/monitoring/list/services dir parameter, the /icingaweb2/user/list query string, the /icingaweb2/monitoring/timeline query string, or the /icingaweb2/setup query string.

Affected products
Icinga Web 2, Suse
Icinga Icinga Web 2
= 2.6.1
CVSS 3.0
6.1 MEDIUM
EPSS
0.7% (51th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2018-12-17
CVE-2018-18248 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2018-18248 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2018-18248 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.