Logsign Unified SecOps Platform
cpe:2.3:a:logsign:unified_secops_platform:*:*:*:*:*:*:*
An authentication bypass vulnerability has been identified in Logsign Unified SecOps Platform. This issue allows remote attackers to bypass authentication on affected systems. The vulnerability arises from improper implementation of the authentication algorithm in the web service, which by default listens on TCP port 443. Notably, authentication is not required to exploit this vulnerability.
Exploitation of this vulnerability allows for unauthorized access to the affected system, bypassing authentication mechanisms entirely.
Logsign has released an update to address this vulnerability. Details about the update can be found in the Logsign release notes.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.