Wazuh

Wazuh

28 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.54%
  • Veröffentlicht 29.10.2025 15:52:52
  • Zuletzt bearbeitet 03.11.2025 19:33:58

Wazuh is a free and open source platform used for threat prevention, detection, and response. A heap-based out-of-bounds WRITE occurs in decode_win_permissions, resulting in writing a NULL byte 2 bytes before the start of the buffer allocated to deco...

Exploit
  • EPSS 0.09%
  • Veröffentlicht 29.10.2025 15:37:43
  • Zuletzt bearbeitet 03.11.2025 19:32:54

Wazuh is a free and open source platform used for threat prevention, detection, and response. fillData() implementation does not check whether value is NULL or not before calling os_strdup() on it. A compromised agent can cause a crash of analysisd b...

  • EPSS 0.02%
  • Veröffentlicht 28.10.2025 15:48:15
  • Zuletzt bearbeitet 30.10.2025 15:05:32

Wazuh's File Integrity Monitoring (FIM), when configured with automatic threat removal, contains a time-of-check/time-of-use (TOCTOU) race condition that can allow a local, low-privileged attacker to cause the Wazuh service (running as NT AUTHORITY\S...

Exploit
  • EPSS 0.08%
  • Veröffentlicht 27.09.2025 01:15:43
  • Zuletzt bearbeitet 16.10.2025 17:33:38

Wazuh is a free and open source platform used for threat prevention, detection, and response. In versions starting from 3.8.0 to before 4.11.0, wazuh-analysisd is vulnerable to a heap buffer overflow when parsing XML elements from Windows EventChanne...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 11.06.2025 01:15:13
  • Zuletzt bearbeitet 01.10.2025 15:01:48

Improper input validation in the Wazuh agent for Windows prior to version 4.8.0 allows an attacker with control over the Wazuh server or agent key to configure the agent to connect to a malicious UNC path. This results in the leakage of the machine a...

  • EPSS 0.19%
  • Veröffentlicht 13.02.2025 22:15:11
  • Zuletzt bearbeitet 17.03.2025 19:15:24

Wazuh SIEM version 4.8.2 is affected by a broken access control vulnerability. This issue allows the unauthorized creation of internal users without assigning any existing user role, potentially leading to privilege escalation or unauthorized access ...

Warnung Exploit
  • EPSS 93.8%
  • Veröffentlicht 10.02.2025 20:15:42
  • Zuletzt bearbeitet 24.10.2025 13:59:44

Wazuh is a free and open source platform used for threat prevention, detection, and response. Starting in version 4.4.0 and prior to version 4.9.1, an unsafe deserialization vulnerability allows for remote code execution on Wazuh servers. Distributed...

  • EPSS 0.09%
  • Veröffentlicht 03.02.2025 22:15:27
  • Zuletzt bearbeitet 16.09.2025 17:01:54

Wazuh is a free and open source platform used for threat prevention, detection, and response. It is capable of protecting workloads across on-premises, virtualized, containerized, and cloud-based environments. This vulnerability occurs when the syste...

Exploit
  • EPSS 0.03%
  • Veröffentlicht 03.02.2025 22:15:27
  • Zuletzt bearbeitet 16.09.2025 17:18:46

Wazuh is a free and open source platform used for threat prevention, detection, and response. It is capable of protecting workloads across on-premises, virtualized, containerized, and cloud-based environments. The wazuh-agent for Windows is vulnerabl...

  • EPSS 0.78%
  • Veröffentlicht 19.04.2024 15:15:50
  • Zuletzt bearbeitet 09.01.2025 17:38:55

Wazuh is a free and open source platform used for threat prevention, detection, and response. There is a buffer overflow hazard in wazuh-analysisd when handling Unicode characters from Windows Eventchannel messages. It impacts Wazuh Manager 3.8.0 and...