CVE-2025-1044

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Feb 11, 2025
Updated: Feb 18, 2025
CWE ID 287

Summary

CVE-2025-1044 is a newly disclosed authentication bypass vulnerability affecting Logsign Unified SecOps Platform. This issue allows unauthenticated attackers to bypass authentication on impacted installations, granting them unauthorized access to the system. The vulnerability is linked to a flaw in the web service, which listens on the default TCP port 443, and stems from an improperly implemented authentication algorithm. Attackers can exploit this vulnerability without requiring any credentials, posing a significant risk to organizations using Logsign Unified SecOps Platform.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Logsign Unified SecOps Platform

Affected Vendors

  • Logsign