PT-2025-44516 · Unknown · Nagios Log Server

CVE-2025-34273

·

Published

2025-08-05

·

Updated

2025-10-31

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:S/C:N/I:C/A:P
Name of the Vulnerable Software and Affected Versions Nagios Log Server versions prior to 2024R2.0.3
Description The application does not correctly enforce authorization checks for global dashboard deletion, allowing non-administrator users to delete global dashboards. This impacts other users and the monitoring user interface.
Recommendations Update to version 2024R2.0.3 or later.

Fix

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-15427
CVE-2025-34273

Affected Products

Nagios Log Server