Nagios Log Server
cpe:2.3:a:nagios:log_server:*:*:*:*:*:*:*
- < 2024R2.0.3
A vulnerability exists in Nagios Log Server versions prior to 2024R2.0.3, allowing non-administrator users to delete global dashboards. This issue arises from inadequate authorization checks in the dashboard deletion process, enabling lower-privileged users to remove dashboards that impact other users and the overall monitoring interface.
Exploitation of this vulnerability allows for unauthorized deletion of global dashboards, disrupting the monitoring experience for other users and potentially affecting overall system usability.
Users are advised to upgrade to Nagios Log Server version 2024R2.0.3 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.