All CVEs — page 36 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
A Code Injection vulnerability exists in Logsign SIEM versions from 6.4.101 before 6.4.117, allowing attackers to execute arbitrary code.
This vulnerability allows an authenticated client or a malicious migration source server to write attacker-controlled files to arbitrary paths on the target host as root, leading to full host compromise.
This vulnerability allows SQL injection, enabling an attacker to execute arbitrary SQL commands, potentially leading to data theft or system compromise.
This flaw allows an authenticated user to traverse paths and delete or replace arbitrary files and directories on the host filesystem, posing a significant risk due to the elevated privileges involved.
This flaw allows an authenticated client to traverse paths and delete arbitrary files or inject content on the host, leading to potential full host compromise.
The vulnerability allows remote command injection through manipulation of the 'ip' argument in the '/ap_ip.cgi' file, leading to potential system compromise.