Impact
The Logsign SIEM application contains an Insufficiently Protected Credentials flaw (CWE‑522) that permits an attacker to retrieve embedded sensitive data. The vulnerability is triggered when credentials are inadequately safeguarded, allowing a malicious actor to access confidential information stored in the system. A successful exploitation would expose private logs, configuration details, or authentication secrets, compromising confidentiality and possibly giving the attacker further privileges.
Affected Systems
The affected product is Logsign SIEM from Innotim Software Telecommunications and Consulting Trade Ltd. Co. Versions 6.4.97 through 6.4.113 are vulnerable. Any installation running these releases without the latest update (version 6.4.114 or newer) is at risk.
Risk and Exploitability
The CVSS score of 9 indicates high severity, but the EPSS score is not available and the issue is not listed in CISA KEV, suggesting no widespread exploitation has been observed yet. Attackers could exploit the flaw over the network by authenticating with a compromised or weak credential that is stored or transmitted insecurely. Since the vulnerability permits direct data read, it carries a significant confidentiality impact and could serve as a foothold for further compromise.
OpenCVE Enrichment