CVE-2025-67254: Path Traversal
Published Dec 29, 2025
·Updated
NagiosXI 2026R1.0.1 build 1762361101 is vulnerable to Directory Traversal in /admin/coreconfigsnapshots.php.
Affected Software
2 affected components
Nagios Nagios XI
Nagios Nagios XI=2026-r1.0.1
Event History
Dec 29, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-67254?
CVE-2025-67254 is classified as a critical severity vulnerability.
2
How do I fix CVE-2025-67254?
To mitigate CVE-2025-67254, update Nagios XI to the latest version where the vulnerability is patched.
3
What specific component is impacted by CVE-2025-67254?
CVE-2025-67254 impacts the /admin/coreconfigsnapshots.php component of Nagios XI.
4
What type of vulnerability is CVE-2025-67254?
CVE-2025-67254 is a Directory Traversal vulnerability.
5
Can CVE-2025-67254 lead to unauthorized access?
Yes, CVE-2025-67254 can potentially lead to unauthorized access to sensitive files.