CNNVD-202510-4088 Information

CNNVD ID

CNNVD-202510-4088

CVE-2025-34272

  • CNNVD Published: 2025-10-30

Description (Chinese)

Nagios Log Server是美国Nagios公司的一套集中式日志管理、监控和分析软件。 Nagios Log Server 2024R2.0.3之前版本存在安全漏洞,该漏洞源于默认仪表板删除后未可靠回退到空默认仪表板,可能导致信息泄露或意外权限暴露。

Description (English)

Nagios Log Server is a centralized log management, monitoring and analysis software for the United States company Nagios. There was a security loophole in the pre-Nagios Log Server 2024R2.0.3 version, which resulted from the non-reliable retreat of the default dashboard to an empty default dashboard after it was removed, which could lead to information leaking or unexpected access exposure.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Nagios

Published

2025-10-30

Last Modified

2026-02-24

References

https://www.nagios.com/changelog/#log-server https://www.nagios.com/products/security/#log-server-2024R2 https://www.vulncheck.com/advisories/nagios-log-server-non-empty-default-dashboard-fallback

Patch

https://www.nagios.com/products/security/#log-server-2024R2

Share on: