Disclosure summary
Nagios Log Server versions prior to 2026R1.0.1 are vulnerable to local privilege escalation due to a combination of sudo misconfiguration and group-writable application directories. The 'www-data' user is a member of the 'nagios' group, which has write access to '/usr/local/nagioslogserver/scripts', while several scripts in this directory are owned by root and may be executed via sudo without a password. A local attacker running as 'www-data' can move one of these root-owned scripts to a backup name and create a replacement script with attacker-controlled content at the original path, then invoke it with sudo. This allows arbitrary commands to be executed with root privileges, providing full compromise of the underlying operating system.
Source-reported weakness categories
CWE-732
Source-specific records & product guidance
Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.
NIST National Vulnerability Database · NVD-CVE-2025-34323
Open original source · Updated Oct 07, 2026
Only CPE matches marked vulnerable=true are indexed. AND/OR platform conditions must be checked in the original NVD record.
| Vendor | Product / association | Version / bounds |
|---|---|---|
| nagios | log_server | * {"versionEndExcluding":"2026"} |
| nagios | log_server | 2026 |
Original records & references
- NIST NVD record
- CVE Program record
- theyhack.me
- www.nagios.com — Release Notes
- www.nagios.com — Vendor Advisory
- www.vulncheck.com — Third Party Advisory
PUBLISHED 2025-11-17T13:15:56-05:00
MODIFIED 2026-10-07T17:10:00-04:00
INGESTED 2026-10-08T12:35:23-04:00