Wazuh是Wazuh开源的一个应用软件。用于收集,汇总,索引和分析安全数据,帮助组织检测入侵,威胁和行为异常。 Wazuh 4.9.0版本至4.13.0之前版本存在访问控制错误漏洞,该漏洞源于API配置不当,可能导致未经授权的代理注册。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| wazuh | wazuh-dashboard-plugins | >= 4.9.0, < 4.13.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-30201 | 7.7 HIGH | Wazuh NetNTLMv2 Hash Theft In Multiple Centralized Configuration Capabilities |
| CVE-2025-54866 | Wazuh installation fails to protected authd.pass on Windows | |
| CVE-2025-64169 | Wazuh NULL pointer dereference in fim_alert line 666 |
No comments yet