LogRhythm develops a security information and event management (SIEM) platform that aggregates and analyzes security data across enterprise networks, with its vulnerability footprint concentrated around the core LogRhythm platform and Platform Manager components. Observed weaknesses cluster around web-application input handling and authentication, including cross-site request forgery, cross-site scripting, OS command injection, and related input-neutralization issues that are typical of web-facing security analytics platforms. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Logrhythm over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-25094CRITICAL LogRhythm Platform Manager 7.4.9 allows Command Injection. To exploit this, an attacker can inject arbitrary program names and arguments into a WebSocket. These are forwarded to an | Dec 17, 2020 | 9.8 | 30 | NO | NO |
CVE-2020-25095HIGH LogRhythm Platform Manager (PM) 7.4.9 allows CSRF. The Web interface is vulnerable to Cross-site WebSocket Hijacking (CSWH). If a logged-in PM user visits a malicious site in the s | Dec 17, 2020 | 8.8 | 26 | NO | NO |
CVE-2020-25096HIGH LogRhythm Platform Manager (PM) 7.4.9 has Incorrect Access Control. Users within LogRhythm can be delegated different roles and privileges, intended to limit what data and services | Dec 17, 2020 | 8.8 | 25 | NO | NO |
CVE-2021-41943MEDIUM Logrhythm Web Console 7.4.9 allows for HTML tag injection through Contextualize Action -> Create a new Contextualize Action -> Inject your HTML tag in the name field. | Dec 13, 2022 | 6.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Logrhythm.
Media articles that mention a CVE ID that affects a product developed by Logrhythm — matched by CVE ID, not by vendor name.