Home / Companies / Sonar / Blog / Post Details
Content Deep Dive

OpenNMS Vulnerabilities: Securing Code against Attackers’ Unexpected Ways

Blog post from Sonar

Post Details
Company
Date Published
Author
Stefan Schiller
Word Count
1,945
Company Posts That Month
14
Language
English
Hacker News Points
-
Post removed?
No
Summary

An XSS vulnerability was found in OpenNMS, a popular enterprise-grade monitoring solution. The issue is tracked as CVE-2023-0846 and allows an unauthenticated attacker to inject a JavaScript payload into the admin dashboard by exploiting another vulnerability in the application. This can lead to arbitrary code execution on the OpenNMS server once an admin views the dashboard. The vulnerabilities were fixed in OpenNMS 31.0.4.

Trends Found in this Post

No tracked trend matches for this post yet.

Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.