CNNVD-202510-4083 Information

CNNVD ID

CNNVD-202510-4083

CVE-2025-34280

  • CNNVD Published: 2025-10-30

Description (Chinese)

Nagios Network Analyzer是Nagios公司的一款用于监控和分析网络流量的企业级解决方案。 Nagios Network Analyzer 2024R2.0.1之前版本存在安全漏洞,该漏洞源于LDAP证书管理功能输入清理不当,可能导致远程代码执行。

Description (English)

Nagios Network Analyzer is an enterprise-level solution by Nagios to monitor and analyse network traffic. There was a security loophole in the pre-Nagios Network Analyzer 2024R2.0.1 version, which resulted from the inappropriate clean-up of LDAP certificate management functionality, which could lead to remote code implementation.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Nagios

Published

2025-10-30

Last Modified

2026-02-24

References

https://www.nagios.com/changelog/nagios-network-analyzer/ https://www.nagios.com/products/security/#network-analyzer https://www.vulncheck.com/advisories/nagios-network-analyzer-rce-in-ldap-certificate-removal-function

Patch

https://www.nagios.com/products/security/#network-analyzer

Share on: