Loganalyzer
Vendor:
First CVE: Jun 20, 2012 · Active for 14 years
6
Total CVEs
More Total CVEs than 80% of tracked products
1.2
Avg CVEs / Year
Higher CVE frequency than 55% of tracked products
6.1
Avg CVSS
Higher Avg CVSS than 24% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Loganalyzer over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jun 20, 2012
14 years ago
Most Recent CVE
Aug 8, 2023
1,081 days ago
CVE Severity & Scoring
Loganalyzer6 CVEs
83%
17%
All CVEs352,294 CVEs
45%
40%
11%
MediumCritical
Attack Vector
Local0 (0.0%)
Network4 (66.7%)
Unknown2 (33.3%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low4 (66.7%)
High0 (0.0%)
Unknown2 (33.3%)
User Interaction
None1 (16.7%)
Unknown2 (33.3%)
Required3 (50.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None4 (66.7%)
Unknown2 (33.3%)
Top CVEs
Signals from CVEs in this product scope (6 CVEs).
6 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-19877MEDIUM login.php in Adiscon LogAnalyzer before 4.1.7 has XSS via the Login Button Referer field. | Dec 5, 2018 | 6.1 | 49 | NO | YES |
CVE-2023-34600CRITICAL Adiscon LogAnalyzer v4.1.13 and before is vulnerable to SQL Injection. | Jun 20, 2023 | 9.8 | 42 | NO | NO |
CVE-2023-36306MEDIUM A Cross Site Scripting (XSS) vulnerability in Adiscon Aiscon LogAnalyzer through 4.1.13 allows a remote attacker to execute arbitrary code via the asktheoracle.php, details.php, in | Aug 8, 2023 | 6.1 | 36 | NO | YES |
CVE-2014-6070MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Adiscon LogAnalyzer before 3.6.6 allow remote attackers to inject arbitrary web script or HTML via the hostname in (1) index. | Sep 11, 2014 | 4.3 | 28 | NO | YES |
CVE-2021-31738MEDIUM Adiscon LogAnalyzer 4.1.10 and 4.1.11 allow login.php XSS. | Jun 8, 2021 | 6.1 | 19 | NO | NO |
CVE-2012-3790MEDIUM Cross-site scripting (XSS) vulnerability in index.php in Adiscon LogAnalyzer before 3.4.4 and 3.5.x before 3.5.5 allows remote attackers to inject arbitrary web script or HTML via | Jun 20, 2012 | 4.3 | 16 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (6 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
33.3% of CVEs· 98th percentile
ExploitDB
3 CVEs
50.0% of CVEs· 91st percentile
Social Chatter
Signals from CVEs in this product scope (6 CVEs).
Media Mentions
Signals from CVEs in this product scope (6 CVEs).
Top CNAs Publishing CVEs For Loganalyzer
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.1.11 | 1 | 6.1 | 0.9% | 0 | 0 |
| 4.1.10 | 1 | 6.1 | 0.9% | 0 | 0 |
| 3.6.4 | 1 | 4.3 | 3.6% | 0 | 1 |
| 3.6.3 | 1 | 4.3 | 3.6% | 0 | 1 |
| 3.6.2 | 1 | 4.3 | 3.6% | 0 | 1 |
| 3.6.1 | 1 | 4.3 | 3.6% | 0 | 1 |
| 3.6.0 | 1 | 4.3 | 3.6% | 0 | 1 |
| 3.5.4 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.5.3 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.5.2 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.5.1 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.5.0 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.4.2 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.4.1 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.4.0 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.3.0 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.2.3 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.2.2 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.2.1 | 1 | 4.3 | 1.3% | 0 | 0 |
| 3.2.0 | 1 | 4.3 | 1.3% | 0 | 0 |