An issue was discovered in Logpoint 7.1 before 7.1.2. The daily executed cron file clean_secbi_old_logs is writable by all users and is executed as root, leading to privilege escalation.
References
Configurations
History
18 Apr 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Logpoint siem
Logpoint |
|
| CPE | cpe:2.3:a:logpoint:siem:*:*:*:*:*:*:*:* | |
| References | () https://servicedesk.logpoint.com/hc/en-us/articles/7997112373277-Privilege-Escalation-Through-Cronjob - Vendor Advisory |
21 Nov 2024, 07:33
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://servicedesk.logpoint.com/hc/en-us/articles/7997112373277-Privilege-Escalation-Through-Cronjob - |
03 Jul 2024, 01:39
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-276 | |
| Summary |
|
27 Apr 2024, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-04-27 23:15
Updated : 2025-04-18 19:15
NVD link : CVE-2022-48685
Mitre link : CVE-2022-48685
CVE.ORG link : CVE-2022-48685
JSON object : View
Products Affected
logpoint
- siem
CWE
CWE-276
Incorrect Default Permissions
