Logsign operates a unified security operations platform that aggregates and analyzes security event data, and the vendor's vulnerability footprint reflects the attack surface inherent to centralized log management and threat-detection infrastructure. Vulnerabilities affecting the vendor skew toward serious outcomes and show a moderate tendency toward public exploit availability, with recurring weaknesses in path traversal, OS command injection, and authentication mechanisms that are characteristic of systems accepting and processing untrusted security event streams. Defenders should prioritize access controls and network segmentation around this platform, as successful exploitation could yield log tampering or command execution in a trust-critical role; current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Logsign over time
Signals from CVEs in this vendor scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-1044CRITICAL Logsign Unified SecOps Platform Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Logsign Unifie | Feb 11, 2025 | 9.8 | 68 | NO | NO |
CVE-2024-5721HIGH Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected install | Nov 22, 2024 | 8.1 | 35 | NO | YES |
CVE-2024-5716CRITICAL Logsign Unified SecOps Platform Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Logsign Unifie | Nov 22, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-5719HIGH Logsign Unified SecOps Platform Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installation | Nov 22, 2024 | 8.8 | 26 | NO | NO |
CVE-2024-5717HIGH Logsign Unified SecOps Platform Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installation | Nov 22, 2024 | 8.8 | 26 | NO | NO |
CVE-2024-5722HIGH Logsign Unified SecOps Platform HTTP API Hard-coded Cryptographic Key Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary | Nov 22, 2024 | 8.8 | 25 | NO | NO |
CVE-2024-5720HIGH Logsign Unified SecOps Platform Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installation | Nov 22, 2024 | 8.8 | 25 | NO | NO |
CVE-2024-7600HIGH Logsign Unified SecOps Platform Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installa | Aug 21, 2024 | 8.1 | 24 | NO | NO |
CVE-2024-5718HIGH Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected install | Nov 22, 2024 | 8.1 | 23 | NO | NO |
CVE-2024-7603HIGH Logsign Unified SecOps Platform Directory Traversal Arbitrary Directory Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary directories on affect | Aug 21, 2024 | 8.1 | 23 | NO | NO |
Signals from CVEs in this vendor scope (15 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Logsign.
Media articles that mention a CVE ID that affects a product developed by Logsign — matched by CVE ID, not by vendor name.