Home
MEDIUM: 6.9 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:NDefault status
unaffected
Any version before 7.7.0
affected
Description
An issue was discovered in Logpoint before 7.7.0. An improperly configured access control policy exposes sensitive Logpoint internal service (Redis) information to li-admin users. This can lead to privilege escalation.
Problem types
CWE-863 Incorrect Authorization
Product status
Any version before 7.7.0
References
servicedesk.logpoint.com/...posed-for-internal-communication