An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads in Report Templates. These are executed when the backup process is initiated, leading to Remote Code Execution.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Dec 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-77 | |
Metrics |
cvssV3_1
|
Mon, 16 Dec 2024 06:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads in Report Templates. These are executed when the backup process is initiated, leading to Remote Code Execution. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-12-16T00:00:00
Updated: 2024-12-16T15:57:09.650Z
Reserved: 2024-12-16T00:00:00
Link: CVE-2024-56086
Vulnrichment
Updated: 2024-12-16T15:56:59.092Z
NVD
Status : Received
Published: 2024-12-16T06:15:07.557
Modified: 2024-12-16T16:15:09.980
Link: CVE-2024-56086
Redhat
No data.