CVE-2024-56085

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
16/12/2024
Last modified:
17/04/2025

Description

An issue was discovered in Logpoint before 7.5.0. Authenticated users can inject payloads while creating Search Template Dashboard. These are executed, leading to Server-Side Template Injection.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:logpoint:siem:*:*:*:*:*:*:*:* 7.5.0 (excluding)