Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability.
The specific flaw exists within the implementation of the cluster HTTP API, which listens on TCP port 1924 when enabled. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24169.
Metrics
Affected Vendors & Products
References
History
Tue, 26 Nov 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Logsign
Logsign unified Secops |
|
CPEs | cpe:2.3:a:logsign:unified_secops:*:*:*:*:*:*:*:* | |
Vendors & Products |
Logsign
Logsign unified Secops |
|
Metrics |
ssvc
|
Fri, 22 Nov 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Logsign Unified SecOps Platform. Authentication is not required to exploit this vulnerability. The specific flaw exists within the implementation of the cluster HTTP API, which listens on TCP port 1924 when enabled. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24169. | |
Title | Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability | |
Weaknesses | CWE-306 | |
References |
| |
Metrics |
cvssV3_0
|
MITRE
Status: PUBLISHED
Assigner: zdi
Published: 2024-11-22T20:05:33.642Z
Updated: 2024-11-26T15:57:55.702Z
Reserved: 2024-06-06T23:09:31.083Z
Link: CVE-2024-5721
Vulnrichment
Updated: 2024-11-25T17:32:01.161Z
NVD
Status : Received
Published: 2024-11-22T20:15:10.677
Modified: 2024-11-22T20:15:10.677
Link: CVE-2024-5721
Redhat
No data.