漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Nagios Log Server < 2024R2.0.3 Non-Empty Default Dashboard Fallback
Vulnerability Description
In Nagios Log Server versions prior to 2024R2.0.3, when a user's configured default dashboard is deleted, the application does not reliably fall back to an empty, default dashboard. In some implementations this can result in an unexpected dashboard being presented as the user's default view. Depending on the product's dashboard sharing and access policies, this behavior may cause information exposure or unexpected privilege exposure.
CVSS Information
N/A
Vulnerability Type
信息暴露
Vulnerability Title
Nagios Log Server 安全漏洞
Vulnerability Description
Nagios Log Server是美国Nagios公司的一套集中式日志管理、监控和分析软件。 Nagios Log Server 2024R2.0.3之前版本存在安全漏洞,该漏洞源于默认仪表板删除后未可靠回退到空默认仪表板,可能导致信息泄露或意外权限暴露。
CVSS Information
N/A
Vulnerability Type
N/A