Description
Use of default credentials vulnerability in Innotim Software, Telecommunications and Consultancy Trade Ltd. Co. Logsign SIEM allows Try Common or Default Usernames and Passwords.

This issue affects Logsign SIEM: from 6.4.101 before 6.4.117.
Published: 2026-09-28
Score: 9.8 Critical
EPSS: n/a
KEV: No
Impact: Remote privileged access
Action: Patch immediately
AI Analysis

Impact

The flaw allows an attacker to log in to Logsign SIEM with default credentials. This provides them with administrative access to the SIEM system, potentially allowing them to view all logs, manage configurations, and exercise full control over the security monitoring environment. The impact is equivalent to that of a privileged user within the SIEM.

Affected Systems

Innotim Software’s Logsign SIEM, versions 6.4.101 through 6.4.116, distributed by Innotim Software, Telecommunications and Consultancy Trade Ltd. Co., is vulnerable due to the presence of default administrative credentials set during installation or upgrade to these releases.

Risk and Exploitability

The CVSS score of 9.8 classifies this vulnerability as critical, indicating remote privileged access. The EPSS score is not available, and the lack of a KEV listing does not reduce the risk. The likely attack vector is through the SIEM’s web or API login interface, where an attacker can reuse hard‑coded or common default usernames and passwords with no further exploitation steps required.

Generated by OpenCVE AI on September 28, 2026 at 16:06 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Logsign SIEM to version 6.4.117 or later to eliminate default credentials
  • After installation or upgrade, promptly change any default usernames and passwords
  • Restrict the SIEM’s administrative web or API interfaces to trusted networks or specific IP addresses

Generated by OpenCVE AI on September 28, 2026 at 16:06 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 28 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 28 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Innotim Software Telecommunications And Consulting Trade Ltd. Co.
Innotim Software Telecommunications And Consulting Trade Ltd. Co. logsign Siem
Vendors & Products Innotim Software Telecommunications And Consulting Trade Ltd. Co.
Innotim Software Telecommunications And Consulting Trade Ltd. Co. logsign Siem

Mon, 28 Sep 2026 14:00:00 +0000

Type Values Removed Values Added
Description Use of default credentials vulnerability in Innotim Software, Telecommunications and Consultancy Trade Ltd. Co. Logsign SIEM allows Try Common or Default Usernames and Passwords. This issue affects Logsign SIEM: from 6.4.101 before 6.4.117.
Title Default Admin Credentials in Innotim Software's Logsign SIEM
Weaknesses CWE-1392
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Innotim Software Telecommunications And Consulting Trade Ltd. Co. Logsign Siem
cve-icon MITRE

Status: PUBLISHED

Assigner: TR-CERT

Published:

Updated: 2026-09-28T16:22:26.694Z

Reserved: 2026-09-14T11:26:47.413Z

Link: CVE-2026-90924

cve-icon Vulnrichment

Updated: 2026-09-28T16:22:23.752Z

cve-icon NVD

Status : Deferred

Published: 2026-09-28T14:17:21.720

Modified: 2026-09-28T17:17:52.323

Link: CVE-2026-90924

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-28T16:15:04Z

Weaknesses