Total vulnerabilities in the database
An issue was discovered in Icinga 2.x through 2.8.1. The lack of a constant-time password comparison function can disclose the password to an attacker.
CVSS v3:
CVSS v2:
No CWE or OWASP classifications available.