JPCERT Coordination Center Vulnerabilities and Affected Products
Vulnerabilities associated with LogonTracer.
Products
Clear product- LogonTracer4 vulnerabilities
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2018-16168CRITICAL | LogonTracer 1.2.0 and earlier allows remote attackers to conduct Python code injection attacks via unspecified vectors. CWE-94Jan 9, 2019 | CVSS9.8v3.0 | EPSS2.4% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2018-16166HIGH | LogonTracer 1.2.0 and earlier allows remote attackers to conduct XML External Entity (XXE) attacks via unspecified vectors. CWE-611Jan 9, 2019 | CVSS8.8v3.0 | EPSS1.88% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2018-16167CRITICAL | jpcert logontracer Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')LogonTracer 1.2.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors. | CVSS9.8v3.0 | EPSS74.7% | PoCs2 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |
CVE-2018-16165MEDIUM | Cross-site scripting vulnerability in LogonTracer 1.2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79Jan 9, 2019 | CVSS6.1v3.0 | EPSS1.12% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |