Threats Tagged 'cve-2025-60424'
View all threats tagged with 'cve-2025-60424'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2025-60424'
Click on any threat for detailed analysis and mitigation recommendations
0 CVE-2025-60424 is a high-severity vulnerability in Nagios Fusion versions v2024R1.2 and v2024R2 where the OTP verification component lacks rate limiting, enabling attackers with low privileges to perform brute-force attacks to bypass authentication. This flaw impacts confidentiality and integrity by allowing unauthorized access without user interaction. The vulnerability requires network access and low privileges but no user interaction, making exploitation relatively feasible in targeted environments. European organizations using affected Nagios Fusion versions for IT infrastructure monitoring could face unauthorized access risks, potentially leading to data breaches or manipulation of monitoring data. No known exploits are currently reported in the wild, but the absence of patches increases urgency for mitigation. Organizations should implement strict network segmentation, monitor authentication attempts, and apply compensating controls until official patches are released. Countries with significant Nagios Fusion deployments, such as Germany, the UK, France, and the Netherlands, are more likely to be impacted due to their large IT infrastructure sectors and reliance on monitoring tools. Given the vulnerability's characteristics and CVSS score of 7.6, it is classified as high severity. Join the discussion | CVE Database V5 | 10/27/2025, 00:00:00 UTC Added: 10/27/2025, 15:37:55 UTC |
Showing 1 to 1 of 1 result