CVE-2025-58097 - CVE House
Back to Database
Status published Medium CVE-2025-58097

The installation directory of LogStare Collector is configured with incorrect...

Vulnerability Description

The installation directory of LogStare Collector is configured with incorrect access permissions. A non-administrative user may manipulate files within the installation directory and execute arbitrary code with the administrative privilege.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-58097

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

LogStare Inc.

View all reports →

Affected Software

LogStare Collector (for Windows), LogStare Collector (for Linux)
Vulnerable Versions:
2.4.1 and earlier

Timeline

Official Publish: November 21st, 2025
Last Modified: November 21st, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Weaknesses (CWE)