Japan Computer Emergency Response Team Coordination Center LogonTracer
Moderate fix1 remedy
cpe:2.3:a:jpcert:logontracer:*:*:*:*:*:*:*
Moderate fix1 remedy
- < 2.0.0
A command injection vulnerability has been identified in LogonTracer versions prior to 2.0.0. This vulnerability allows a logged-in user to execute arbitrary operating system commands.
Exploitation of this vulnerability allows for arbitrary OS command execution by a logged-in user.
Users are advised to update LogonTracer to version 2.0.0 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.