LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Prior to version 24.4.0, there is improper sanitization on the `Service` template name, which can lead to stored Cross-site Scripting. Version 24.4.0 fixes this vulnerability.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-1133 | LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. Prior to version 24.4.0, there is improper sanitization on the `Service` template name, which can lead to stored Cross-site Scripting. Version 24.4.0 fixes this vulnerability. |
Github GHSA |
GHSA-72m9-7c8x-pmmw | LibreNMS uses Improper Sanitization on Service template name leads to Stored XSS |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 02 Jan 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Librenms
Librenms librenms |
|
| CPEs | cpe:2.3:a:librenms:librenms:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Librenms
Librenms librenms |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-08-02T02:13:38.943Z
Reserved: 2024-04-12T19:41:51.168Z
Link: CVE-2024-32479
Updated: 2024-08-02T02:13:38.943Z
Status : Analyzed
Published: 2024-04-22T22:15:08.027
Modified: 2025-01-02T21:32:19.123
Link: CVE-2024-32479
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA