PT-2025-44516 · Unknown · Nagios Log Server

Published

2025-08-05

·

Updated

2025-10-31

·

CVE-2025-34273

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:S/C:N/I:C/A:P
Name of the Vulnerable Software and Affected Versions Nagios Log Server versions prior to 2024R2.0.3
Description The application does not correctly enforce authorization checks for global dashboard deletion, allowing non-administrator users to delete global dashboards. This impacts other users and the monitoring user interface.
Recommendations Update to version 2024R2.0.3 or later.

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

BDU:2025-15427
CVE-2025-34273

Affected Products

Nagios Log Server