Логотип exploitDog
bind:CVE-2023-7322
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-7322

Количество 3

Количество 3

nvd логотип

CVE-2023-7322

3 месяца назад

Nagios Log Server versions prior to 2024R1 contain an incorrect authorization vulnerability. Users who lacked the required API permission were nevertheless able to invoke API endpoints, resulting in unintended access to data and actions exposed via the API. This incorrect authorization check could allow authenticated but non-privileged users to read or modify resources beyond their intended rights.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-gpq7-64xq-65r5

3 месяца назад

Nagios Log Server versions prior to 2024R1 contain an incorrect authorization vulnerability. Users who lacked the required API permission were nevertheless able to invoke API endpoints, resulting in unintended access to data and actions exposed via the API. This incorrect authorization check could allow authenticated but non-privileged users to read or modify resources beyond their intended rights.

CVSS3: 8.1
EPSS: Низкий
fstec логотип

BDU:2025-16438

около 2 лет назад

Уязвимость интерфейса программного средства мониторинга и анализа логов Nagios Log Server, позволяющая нарушителю получить доступ на чтение и изменение данных

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-7322

Nagios Log Server versions prior to 2024R1 contain an incorrect authorization vulnerability. Users who lacked the required API permission were nevertheless able to invoke API endpoints, resulting in unintended access to data and actions exposed via the API. This incorrect authorization check could allow authenticated but non-privileged users to read or modify resources beyond their intended rights.

CVSS3: 8.1
0%
Низкий
3 месяца назад
github логотип
GHSA-gpq7-64xq-65r5

Nagios Log Server versions prior to 2024R1 contain an incorrect authorization vulnerability. Users who lacked the required API permission were nevertheless able to invoke API endpoints, resulting in unintended access to data and actions exposed via the API. This incorrect authorization check could allow authenticated but non-privileged users to read or modify resources beyond their intended rights.

CVSS3: 8.1
0%
Низкий
3 месяца назад
fstec логотип
BDU:2025-16438

Уязвимость интерфейса программного средства мониторинга и анализа логов Nagios Log Server, позволяющая нарушителю получить доступ на чтение и изменение данных

CVSS3: 8.8
0%
Низкий
около 2 лет назад

Уязвимостей на страницу