JPCERTCC/LogonTracer

JPCERTCC/LogonTracer

Releases21
Frequency5 months 1 day
Last Release
Stars3.2K
Investigate malicious Windows logon by visualizing and analyzing Windows event log

CVE History

CVEAffectedPublishedCVSS v3CVSS v2
< 2.0.0

There is a cypher injection issue in LogonTracer prior to v2.0.0. If specially crafted Windows event log data is loaded, the contents of the database may be altered.

< 2.0.0

An OS command Injection issue exists in LogonTracer prior to v2.0.0. An arbitrary OS command may be executed by a logged-in user.

<= 1.2.04.3 MEDIUM

Cross-site scripting vulnerability in LogonTracer 1.2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

<= 1.2.06.8 MEDIUM

LogonTracer 1.2.0 and earlier allows remote attackers to conduct XML External Entity (XXE) attacks via unspecified vectors.

<= 1.2.010 HIGH

LogonTracer 1.2.0 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.

<= 1.2.07.5 HIGH

LogonTracer 1.2.0 and earlier allows remote attackers to conduct Python code injection attacks via unspecified vectors.