Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Logpoint before 7.5.0. SOAR uses a static JWT secret key to generate tokens that allow access to SOAR API endpoints without authentication. This static key vulnerability enables attackers to create custom JWT secret keys for unauthorized access to these endpoints.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Logpoint 安全漏洞
Vulnerability Description
Logpoint是丹麦Logpoint公司的一款网络安全应用程序。 Logpoint 7.5.0之前版本存在安全漏洞,该漏洞源于SOAR使用静态JWT密钥生成令牌,允许攻击者无需身份验证即可访问SOAR API端点。
CVSS Information
N/A
Vulnerability Type
N/A