CVE-2024-48954

An issue was discovered in Logpoint before 7.5.0. Unvalidated input during the EventHub Collector setup by an authenticated user leads to Remote Code execution.
Configurations

No configuration.

History

08 Nov 2024, 19:01

Type Values Removed Values Added
Summary
  • (es) Se descubrió un problema en Logpoint antes de la versión 7.5.0. La entrada no validada durante la configuración de EventHub Collector por parte de un usuario autenticado provoca la ejecución de código remoto.

07 Nov 2024, 21:35

Type Values Removed Values Added
CWE CWE-78
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.4

07 Nov 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-07 17:15

Updated : 2024-11-08 19:01


NVD link : CVE-2024-48954

Mitre link : CVE-2024-48954

CVE.ORG link : CVE-2024-48954


JSON object : View

Products Affected

No product.

CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')