CVE-2025-64348: Elog Project Elog

High severity, CVSS 7.1. EPSS: 0.3% chance of exploitation in the next 30 days.

ELOG allows an authenticated user to modify or overwrite the configuration file, resulting in denial of service. If the execute facility is specifically enabled with the "-x" command line flag, attackers could execute OS commands on the host machine. By default, ELOG is not configured to allow shell commands or self-registration.

Affected products

Published 2025-10-31. Last modified 2026-06-17.