PT-2025-47791 · Wazuh · Wazuh
Published
2025-11-05
·
Updated
2026-02-06
·
CVE-2025-64483
CVSS v2.0
6.5
Medium
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Wazuh versions 4.9.0 through 4.12.9
Description
Wazuh, a security detection, visibility, and compliance open source project, has an issue where the API – Agent Configuration, in specific setups, permits authenticated users with read-only API roles to obtain agent enrollment credentials via the
/utils/configuration endpoint. These credentials can be leveraged to register new agents within the same Wazuh tenant without the necessary elevated permissions through the user interface.Recommendations
Update to version 4.13.0 or later.
Exploit
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Wazuh