Nagios XI Multiple Cross Site Scripting Vulnerabilities

Summary
This host is running Nagios XI and is prone to multiple cross-site scripting vulnerabilities.
Impact
Successful exploitation will allow remote attackers to insert arbitrary HTML and script code, which will be executed in a user's browser session in the context of an affected site. Impact Level: Application
Solution
Upgrade to Nagios XI version 2011R1.9 or later, For updates refer to http://www.nagios.com/products/nagiosxi
Insight
Multiple flaws are due to improper validation of user-supplied input appended to the URL in multiple scripts, which allows attackers to execute arbitrary HTML and script code in a user's browser session in the context of an affected site.
Affected
Nagios XI versions prior to 2011R1.9
References