Skip to main content

Threats Tagged 'cve-2025-34270'

View all threats tagged with 'cve-2025-34270'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2025-34270

Threats Tagged 'cve-2025-34270'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2025-34270 is a medium severity vulnerability in Nagios Log Server versions prior to 2024R2.0.2 affecting the AD/LDAP user import functionality. The flaw causes plaintext passwords supplied during user import to be stored or displayed without obfuscation, exposing sensitive credentials in the user interface, logs, or diagnostic outputs. This exposure risks credential leakage to administrators or any users with access to these outputs. The vulnerability requires privileged access to exploit and does not need user interaction. Although no exploits are currently known in the wild, the vulnerability could facilitate unauthorized access if exposed. Organizations using affected Nagios Log Server versions should update promptly and restrict access to import results and logs. European organizations with deployments of Nagios Log Server, especially in critical infrastructure or large enterprises, are at risk. Countries with significant Nagios usage and strong regulatory environments around data protection should prioritize mitigation.

Join the discussion

Showing 1 to 1 of 1 result

Filters:Tag: cve-2025-34270
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses