CVE-2023-24035 - Nagios XI Timing Side-Channel Vulnerability
CVE ID :CVE-2023-24035
Published : Sept. 14, 2026, 4:16 a.m. | 50 minutes ago
Description :An issue was discovered in Nagios XI before 5.9.3. The is_insecure_login_authenticated function uses a insecure timing comparison that leads to an attacker being able to bruteforce the admin password, by measuring timing differences in the comparison.
Severity: 3.5 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Sept. 14, 2026, 4:16 a.m. | 50 minutes ago
Description :An issue was discovered in Nagios XI before 5.9.3. The is_insecure_login_authenticated function uses a insecure timing comparison that leads to an attacker being able to bruteforce the admin password, by measuring timing differences in the comparison.
Severity: 3.5 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...