CVE-2025-36625

In Nessus versions prior to 10.8.4, a non-authenticated attacker could alter Nessus logging entries by manipulating http requests to the application.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) En versiones de Nessus anteriores a 10.8.4, un atacante no autenticado podría alterar las entradas de registro de Nessus manipulando las solicitudes http a la aplicación.

18 Apr 2025, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-18 20:15

Updated : 2026-04-15 00:35


NVD link : CVE-2025-36625

Mitre link : CVE-2025-36625

CVE.ORG link : CVE-2025-36625


JSON object : View

Products Affected

No product.

CWE
CWE-117

Improper Output Neutralization for Logs