CVE-2025-64299

EUVD-2025-198424
LogStare Collector improperly handles the password hash data. An administrative user may obtain the other users' password hashes.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
2.7 LOW
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
jpcertCNA
4.9 MEDIUM
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 13%
Affected Products (NVD)
VendorProductVersion
secuavaillogstare_collector
𝑥
< 2.4.2
𝑥
= Vulnerable software versions