Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2025-1035
Disclosure Date: February 18, 2025 (last updated February 19, 2025)
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Komtera Technolgies KLog Server allows Manipulating Web Input to File System Calls.This issue affects KLog Server: before 3.1.1.
0
Attacker Value
Unknown
CVE-2021-3317
Disclosure Date: January 26, 2021 (last updated February 22, 2025)
KLog Server through 2.4.1 allows authenticated command injection. async.php calls shell_exec() on the original value of the source parameter.
0
Attacker Value
Unknown
CVE-2020-35729
Disclosure Date: December 27, 2020 (last updated February 22, 2025)
KLog Server 2.4.1 allows OS command injection via shell metacharacters in the actions/authenticate.php user parameter.
0