CNNVD-202511-1883 Information
CNNVD ID
CNNVD-202511-1883
Related CVE
- CNNVD Published: 2025-11-17
Description (Chinese)
Nagios Log Server是美国Nagios公司的一套集中式日志管理、监控和分析软件。 Nagios Log Server 2026R1.0.1之前版本存在安全漏洞,该漏洞源于实验性Natural Language Queries功能存在命令注入漏洞,可能导致执行任意操作系统命令。
Description (English)
Nagios Log Server is a centralized log management, monitoring and analysis software for the United States company Nagios. There was a security loophole in the pre-Nagios Log Server 2026R1.0.1 version, which stemmed from the existence of an experimental Natural Language Queries function, which could lead to the implementation of arbitrary operating system orders.
Hazard Level
Medium
Vulnerability Type
其他
Affected Vendor
Nagios
Published
2025-11-17
Last Modified
2026-02-24
References
https://www.nagios.com/products/security/#log-server https://www.vulncheck.com/advisories/nagios-log-server-authenticated-command-injection-via-natural-language-queries https://www.nagios.com/changelog/nagios-log-server/nagios-log-server-2026r1-0-1/ https://access.redhat.com/security/cve/cve-2025-34322
Patch
https://www.nagios.com/products/security/#log-server
Share on: