Impact
ZohoCorp ManageEngine EventLog Analyzer and Log360 before build 13071 are vulnerable to a denial‑of‑service flaw that is triggered when the log collector receives malformed syslog packets. The corrupted packets cause the collector daemon to crash, interrupting logging services and potentially impacting monitoring, alerting, and compliance workflows. The weakness is identified as CWE‑248, an improper skip of error handling when processing input.
Affected Systems
Zohocorp’s ManageEngine EventLog Analyzer and Log360 products are affected when deployed with a build number earlier than 13071. No specific patch or minor version number is provided in the advisory, but upgrading to build 13071 or later resolves the issue.
Risk and Exploitability
The CVSS score of 5.3 indicates a moderate severity vulnerability. EPSS data is not available, and the flaw is not listed in CISA’s KEV catalog, suggesting it is not a widely exploited or high‑profile vulnerability. The likely attack vector is the network, where an attacker can send crafted syslog packets to the log collector. Once exploited, the attacker can disrupt logging and monitoring services, compromising the availability of the affected systems.
OpenCVE Enrichment