Icinga是德国Icinga公司的一套可扩展的服务器、网络资源监控系统。 Icinga 2 2.10.0版本至2.15.1之前版本、2.14.7版本和2.13.13版本存在代码问题漏洞,该漏洞源于创建无效引用时可能导致分段错误,任何可访问允许指定筛选表达式API端点的API用户均可利用此漏洞使Icinga 2守护进程崩溃。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-61789 | 5.3 MEDIUM | Icinga DB Web hidden/protected custom variables are prone to filter enumeration |
| CVE-2025-61907 | Icinga 2 API users could access restricted values in filter expressions | |
| CVE-2025-61909 | Icinga 2 signals sent as root to processes based on PID file written by the Icinga 2 daemo |
No comments yet