CNNVD-202510-888 Information

CNNVD ID

CNNVD-202510-888

CVE-2025-44823

  • CNNVD Published: 2025-10-07

Description (Chinese)

Nagios Log Server是美国Nagios公司的一套集中式日志管理、监控和分析软件。 Nagios Log Server 2024R1.3.2之前版本存在安全漏洞,该漏洞源于允许经过身份验证的用户通过API调用检索明文管理API密钥。

Description (English)

Nagios Log Server is a centralized log management, monitoring and analysis software for the United States company Nagios. There was a security loophole in the pre-Nagios Log Server 2024R1.3.2 version, which stemmed from allowing a user with authentication to explicitly manage the API key through API call.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

Nagios

Published

2025-10-07

Last Modified

2026-02-24

References

https://www.exploit-db.com/exploits/52177 https://www.nagios.com/changelog/#log-server

Share on: