Logpoint
Logpoint Siem: vulnerabilidades y CVE
Logpoint Siem tiene 20 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE20
Últimos 12 meses3
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-66361 | Media (6.9) | 0.29% | — | 28 nov 2025 | An issue was discovered in Logpoint before 7.7.0. Sensitive information is exposed in System Processes for an extended period during high CPU load. |
| CVE-2025-66360 | Media (6.9) | 0.30% | — | 28 nov 2025 | An issue was discovered in Logpoint before 7.7.0. An improperly configured access control policy exposes sensitive Logpoint internal service (Redis) information to li-admin users. This can lead to privilege escalation. |
| CVE-2025-66359 | Media (6.1) | 0.19% | — | 28 nov 2025 | An issue was discovered in Logpoint before 7.7.0. Insufficient input validation and a lack of output escaping in multiple components leads to a cross-site scripting (XSS) vulnerability. |
| CVE-2024-56087 | Media (5.9) | 0.30% | — | 16 dic 2024 | An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads while querying Search Template Dashboard. These are executed, leading to Server-Side Template Injection. |
| CVE-2024-56086 | Alta (7.1) | 0.41% | — | 16 dic 2024 | An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads in Report Templates. These are executed when the backup process is initiated, leading to Remote Code Execution. |
| CVE-2024-56085 | Media (5.9) | 0.30% | — | 16 dic 2024 | An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads while creating Search Template Dashboard. These are executed, leading to Server-Side Template Injection. |
| CVE-2024-48954 | Media (6.4) | 0.43% | — | 7 nov 2024 | An issue was discovered in Logpoint before 7.5.0. Unvalidated input during the EventHub Collector setup by an authenticated user leads to Remote Code execution. |
| CVE-2024-48953 | Alta (7.5) | 0.33% | — | 7 nov 2024 | An issue was discovered in Logpoint before 7.5.0. Endpoints for creating, editing, or deleting third-party authentication modules lacked proper authorization checks. This allowed unauthenticated users to register their… |
| CVE-2024-48951 | Alta (7.5) | 0.32% | — | 7 nov 2024 | An issue was discovered in Logpoint before 7.5.0. Server-Side Request Forgery (SSRF) on SOAR can be used to leak Logpoint's API Token leading to authentication bypass. |
| CVE-2024-48950 | Alta (7.5) | 0.33% | — | 7 nov 2024 | An issue was discovered in Logpoint before 7.5.0. An endpoint used by Distributed Logpoint Setup was exposed, allowing unauthenticated attackers to bypass CSRF protections and authentication. |
| CVE-2024-33860 | Media (6.5) | 0.45% | — | 7 may 2024 | An issue was discovered in Logpoint before 7.4.0. It allows Local File Inclusion (LFI) when an arbitrary File Path is used within the File System Collector. The content of the file specified can be viewed in the… |
| CVE-2024-33859 | Media (6.1) | 0.31% | — | 7 may 2024 | An issue was discovered in Logpoint before 7.4.0. HTML code sent through logs wasn't being escaped in the "Interesting Field" Web UI, leading to XSS. |
| CVE-2024-33858 | Media (5.3) | 0.49% | — | 7 may 2024 | An issue was discovered in Logpoint before 7.4.0. A path injection vulnerability is seen while adding a CSV enrichment source. The source_name parameter could be changed to an absolute path; this will write the CSV file… |
| CVE-2024-33857 | Crítica (9.6) | 0.40% | — | 7 may 2024 | An issue was discovered in Logpoint before 7.4.0. Due to a lack of input validation on URLs in threat intelligence, an attacker with low-level access to the system can trigger Server Side Request Forgery. |
| CVE-2024-33856 | Media (5.3) | 0.38% | — | 7 may 2024 | An issue was discovered in Logpoint before 7.4.0. An attacker can enumerate a valid list of usernames by observing the response time at the Forgot Password endpoint. |
| CVE-2024-30176 | Media (5.3) | 0.38% | — | 1 may 2024 | In Logpoint before 7.4.0, an attacker can enumerate a valid list of usernames by using publicly exposed URLs of shared widgets. |
| CVE-2022-48685 | Media (6.7) | 0.17% | — | 27 abr 2024 | An issue was discovered in Logpoint 7.1 before 7.1.2. The daily executed cron file clean_secbi_old_logs is writable by all users and is executed as root, leading to privilege escalation. |
| CVE-2022-48684 | Alta (8.8) | 0.64% | — | 27 abr 2024 | An issue was discovered in Logpoint before 7.1.1. Template injection was seen in the search template. The search template uses jinja templating for generating dynamic data. This could be abused to achieve code… |
| CVE-2024-29865 | Media (5.4) | 0.31% | — | 22 mar 2024 | Logpoint before 7.1.0 allows Self-XSS on the LDAP authentication page via the username to the LDAP login form. |
| CVE-2023-49950 | Media (5.4) | 0.51% | — | 3 feb 2024 | The Jinja templating in Logpoint SIEM 6.10.0 through 7.x before 7.3.0 does not correctly sanitize log data being displayed when using a custom Jinja template in the Alert view. A remote attacker can craft a cross-site… |