Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Nagios Log Server < 2024R2.0.3 Non-Admin Dashboard Deletion
Vulnerability Description
Nagios Log Server versions prior to 2024R2.0.3 contain an incorrect authorization vulnerability that allows non-administrator users to delete global dashboards. The application did not correctly enforce authorization checks for the global dashboard deletion workflow, enabling lower-privileged users to remove dashboards that affect other users or the overall monitoring UI.
CVSS Information
N/A
Vulnerability Type
授权机制不正确
Vulnerability Title
Nagios Log Server 安全漏洞
Vulnerability Description
Nagios Log Server是美国Nagios公司的一套集中式日志管理、监控和分析软件。 Nagios Log Server 2024R2.0.3之前版本存在安全漏洞,该漏洞源于授权检查不正确,可能导致非管理员用户删除全局仪表板。
CVSS Information
N/A
Vulnerability Type
N/A