Known Vulnerabilities for Klog Server by Klogserver
Listed below are 2 of the newest known vulnerabilities associated with "Klog Server" by "Klogserver".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-1035 json | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Komtera Technolgies KLog Serv... | Not Provided | 2025-02-18 | 2026-06-06 |
| CVE-2021-3317 json | KLog Server through 2.4.1 allows authenticated command injection. async.php calls shell_exec() on the original value of the s... | 8.8 - HIGH | 2021-01-26 | 2022-06-28 |
| CVE-2020-35729 json | KLog Server 2.4.1 allows OS command injection via shell metacharacters in the actions/authenticate.php user parameter. | 9.8 - CRITICAL | 2020-12-27 | 2021-02-18 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Klogserver | Klog Server | 2.4.1 |