VYPR
High severity7.1NVD Advisory· Published Oct 31, 2025· Updated Apr 26, 2026

CVE-2025-64348

CVE-2025-64348

Description

ELOG allows an authenticated user to modify or overwrite the configuration file, resulting in denial of service. If the execute facility is specifically enabled with the "-x" command line flag, attackers could execute OS commands on the host machine. By default, ELOG is not configured to allow shell commands or self-registration.

Affected products

1
  • cpe:2.3:a:elog_project:elog:*:*:*:*:*:*:*:*
    Range: <=3.1.5-20251014

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.