CVE-2024-56085

Published Dec 16, 2024

Last updated 2 months ago

Overview

Description
An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads while creating Search Template Dashboard. These are executed, leading to Server-Side Template Injection.
Source
cve@mitre.org
NVD status
Received

Risk scores

CVSS 3.1

Type
Secondary
Base score
5.9
Impact score
4.7
Exploitability score
1.2
Vector string
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:H/I:L/A:L
Severity
MEDIUM

Weaknesses

134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-77

Social media

Hype score
Not currently trending