Wazuh是Wazuh开源的一个应用软件。用于收集,汇总,索引和分析安全数据,帮助组织检测入侵,威胁和行为异常。 Wazuh 3.7.0版本至4.12.0之前版本存在代码问题漏洞,该漏洞源于fim_alert函数未检查空指针,可能导致analysisd崩溃。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-30201 | 7.7 HIGH | Wazuh NetNTLMv2 Hash Theft In Multiple Centralized Configuration Capabilities |
| CVE-2025-54866 | Wazuh installation fails to protected authd.pass on Windows | |
| CVE-2025-64483 | Wazuh API – Agent Configuration Has Improper Access Control in Agent Enrollment Endpoint |
No comments yet