Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the implementation of the cluster HTTP API, which listens on TCP port 1924 when enabled. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24169.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Logsign
Logsign unified Secops |
|
CPEs | cpe:2.3:a:logsign:unified_secops:*:*:*:*:*:*:*:* | |
Vendors & Products |
Logsign
Logsign unified Secops |
|
Metrics |
ssvc
|
Fri, 22 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the cluster HTTP API, which listens on TCP port 1924 when enabled. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24169. | |
Title | Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability | |
Weaknesses | CWE-306 | |
References |
| |
Metrics |
cvssV3_0
|

Status: PUBLISHED
Assigner: zdi
Published:
Updated: 2024-11-26T15:57:55.702Z
Reserved: 2024-06-06T23:09:31.083Z
Link: CVE-2024-5721

Updated: 2024-11-25T17:32:01.161Z

Status : Received
Published: 2024-11-22T20:15:10.677
Modified: 2024-11-22T20:15:10.677
Link: CVE-2024-5721

No data.