Wazuh是Wazuh开源的一个应用软件。用于收集,汇总,索引和分析安全数据,帮助组织检测入侵,威胁和行为异常。 Wazuh 4.3.0版本至4.13.0之前版本存在安全漏洞,该漏洞源于authd.pass文件缺少ACL,可能导致密码泄露。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-30201 | 7.7 HIGH | Wazuh NetNTLMv2 Hash Theft In Multiple Centralized Configuration Capabilities |
| CVE-2025-64169 | Wazuh NULL pointer dereference in fim_alert line 666 | |
| CVE-2025-64483 | Wazuh API – Agent Configuration Has Improper Access Control in Agent Enrollment Endpoint |
No comments yet