CVE-2020-35488 describes a denial-of-service vulnerability in the fileop module of NXLog Community Edition 2.10.2150, allowing remote attackers to crash the NXLog service via a crafted Syslog payload under specific configuration conditions. This vulnerability carries a CVSS score of 7.5 (High), indicating it can be exploited remotely with low attack complexity, leading to high availability impact. While not actively exploited in the wild and lacking significant community discussion or media coverage, a proof-of-concept exploit is publicly available on ExploitDB.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.0.2272CPE matchmatch criteria | cpe:2.3:a:nxlog:nxlog:*:*:*:*:community:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.