PT-2026-51738 · Upkeeper · Upkeeper Instant Privilege Access
CVE-2026-10745
·
Published
2026-06-24
·
Updated
2026-06-25
CVSS v4.0
7.9
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H |
Name of the Vulnerable Software and Affected Versions
upKeeper Instant Privilege Access versions prior to 1.6.2
Description
Improper output neutralization for logs in upKeeper Instant Privilege Access on Windows enables Log Injection, Tampering, and Forging. This occurs when the application fails to properly sanitize data before writing it to log files, allowing an attacker to insert malicious entries or alter existing logs.
Recommendations
Update upKeeper Instant Privilege Access to version 1.6.2 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Upkeeper Instant Privilege Access