Loading
Nagios Network Analyzer versions prior to 2024R1 are vulnerable to cross-site scripting (XSS) via the Percentile Calculator menu. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.
Use CWE-79, Nagios vendor hub and Network Analyzer product page to widen CVE-2023-7319 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2021-28925, CVE-2025-34280 and CVE-2025-28059 for nearby disclosures in the same product family. Additional editorial context is available in Why “Low” and “Medium” CVEs Still Breach Networks.