CVE-2025-66360: Logpoint Siem
High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.
An issue was discovered in Logpoint before 7.7.0. An improperly configured access control policy exposes sensitive Logpoint internal service (Redis) information to li-admin users. This can lead to privilege escalation.
Affected products
- Logpoint Siem: before 7.7.0 (fixed in 7.7.0)
Published 2025-11-28. Last modified 2026-10-08.