VYPR

Elog

by Elog Project

Source repositories

CVEs (2)

  • CVE-2016-6342HigJun 27, 2017
    risk 0.49cvss 7.5epss 0.00

    elog 3.1.1 allows remote attackers to post data as any username in the logbook.

  • CVE-2025-64348HigOct 31, 2025
    risk 0.46cvss 7.1epss 0.00

    ELOG allows an authenticated user to modify or overwrite the configuration file, resulting in denial of service. If the execute facility is specifically enabled with the "-x" command line flag, attackers could execute OS commands on the host machine. By default, ELOG is not configured to allow shell commands or self-registration.