PT-2026-35276 · Unknown · Logontracer
CVSS v4.0
5.1
Medium
| Vector | AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
LogonTracer versions prior to 2.0.0
Description
A cypher injection issue exists where loading specially crafted Windows event log data can allow the contents of the database to be altered. Cypher injection is a type of attack where an attacker inserts malicious code into a Cypher query, which is a graph query language, to manipulate the database.
Recommendations
Update to version 2.0.0 or later.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Logontracer