An issue was discovered in Logpoint 7.1 before 7.1.2. The daily executed cron file clean_secbi_old_logs is writable by all users and is executed as root, leading to privilege escalation.
References
Configurations
History
18 Apr 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:logpoint:siem:*:*:*:*:*:*:*:* | |
First Time |
Logpoint
Logpoint siem |
|
References | () https://servicedesk.logpoint.com/hc/en-us/articles/7997112373277-Privilege-Escalation-Through-Cronjob - Vendor Advisory |
Information
Published : 2024-04-27 23:15
Updated : 2025-04-18 19:15
NVD link : CVE-2022-48685
Mitre link : CVE-2022-48685
CVE.ORG link : CVE-2022-48685
JSON object : View
Products Affected
logpoint
- siem
CWE
CWE-276
Incorrect Default Permissions