CVE-2025-28131

A Broken Access Control vulnerability in Nagios Network Analyzer 2024R1.0.3 allows low-privilege users with "Read-Only" access to perform administrative actions, including stopping system services and deleting critical resources. This flaw arises due to improper authorization enforcement, enabling unauthorized modifications that compromise system integrity and availability.
Configurations

No configuration.

History

01 Apr 2025, 20:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.6
CWE CWE-285

01 Apr 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-01 17:15

Updated : 2025-04-01 20:26


NVD link : CVE-2025-28131

Mitre link : CVE-2025-28131

CVE.ORG link : CVE-2025-28131


JSON object : View

Products Affected

No product.

CWE
CWE-285

Improper Authorization