CVE-2025-61949
CVE-2025-61949
LogStare Collector contains a stored cross-site scripting vulnerability in UserManagement. If crafted user information is stored, an arbitrary script may be executed on the web browser of the user who logs in to the product's management page.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:A/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N
Productos afectados
LogStare Inc. · LogStare Collector (for Linux)LogStare Inc. · LogStare Collector (for Windows)¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →