CNNVD-202510-4084 Information

CNNVD ID

CNNVD-202510-4084

CVE-2025-34277

  • CNNVD Published: 2025-10-30

Description (Chinese)

Nagios Log Server是美国Nagios公司的一套集中式日志管理、监控和分析软件。 Nagios Log Server 2024R1.3.1之前版本存在安全漏洞,该漏洞源于未正确验证仪表板ID值,可能导致执行任意代码。

Description (English)

Nagios Log Server is a centralized log management, monitoring and analysis software for the United States company Nagios. There was a security loophole in the pre-Nagios Log Server 2024R1.3.1 version, which resulted from incorrect validation of dashboard ID values, which could lead to the implementation of any code.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Nagios

Published

2025-10-30

Last Modified

2026-02-24

References

https://www.nagios.com/changelog/#log-server-2024R1 https://www.nagios.com/products/security/#log-server https://www.vulncheck.com/advisories/nagios-log-server-rce-via-malformed-dashboard-id

Patch

https://www.nagios.com/products/security/#log-server

Share on: