The Jinja templating in Logpoint SIEM 6.10.0 through 7.x...
Moderate severity
Unreviewed
Published
Feb 3, 2024
to the GitHub Advisory Database
•
Updated Feb 13, 2024
Description
Published by the National Vulnerability Database
Feb 3, 2024
Published to the GitHub Advisory Database
Feb 3, 2024
Last updated
Feb 13, 2024
The Jinja templating in Logpoint SIEM 6.10.0 through 7.x before 7.3.0 does not correctly sanitize log data being displayed when using a custom Jinja template in the Alert view. A remote attacker can craft a cross-site scripting (XSS) payload and send it to any system or device that sends logs to the SIEM. If an alert is created, the payload will execute upon the alert data being viewed with that template, which can lead to sensitive data disclosure.
References