PT-2025-47791 · Wazuh · Wazuh

Published

2025-11-05

·

Updated

2026-02-06

·

CVE-2025-64483

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Wazuh versions 4.9.0 through 4.12.9
Description Wazuh, a security detection, visibility, and compliance open source project, has an issue where the API – Agent Configuration, in specific setups, permits authenticated users with read-only API roles to obtain agent enrollment credentials via the /utils/configuration endpoint. These credentials can be leveraged to register new agents within the same Wazuh tenant without the necessary elevated permissions through the user interface.
Recommendations Update to version 4.13.0 or later.

Exploit

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2025-14828
CVE-2025-64483
GHSA-GWF3-8GM3-QRMJ

Affected Products

Wazuh