QID 376428
Date Published: 2022-02-23
QID 376428: NXLog Denial of Service (DoS) Vulnerability
NXLog is a multi-platform log collection and centralization tool that offers log processing features, including log enrichment and log forwarding
The fileop module of the NXLog service in NXLog Community Edition 2.10.2150 allows remote attackers to cause a denial of service via a crafted Syslog payload to the Syslog service.
Affected Version
NXLog-Community Edition 2.10.2150
QID Detection Logic(Authenticated)
QID detects the vulnerable version of nxlog community edition
Note: Nxlog has not deployed an official patch for the community versions.
Exploit may lead to Denial of Service(DOS)
Solution
No patch released. Customer can refer to the nxlog site for more details nxlog-ce.
Vendor References
- NXLog-CE -
nxlog.co/question/6490/cve-2020-35488
CVEs related to QID 376428
Software Advisories
| Advisory ID | Software | Component | Link |
|---|