CVE-2026-10745 PUBLISHED

Assigner: upKeeper
Reserved: 03.06.2026 Published: 24.06.2026 Updated: 24.06.2026

Improper output neutralization for logs vulnerability in upKeeper Solutions upKeeper Instant Privilege Access on Windows allows Log Injection-Tampering-Forging.

This issue affects upKeeper Instant Privilege Access: through 1.6.1.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H
CVSS Score: 7.9

Product Status

Vendor upKeeper Solutions
Product upKeeper Instant Privilege Access
Versions Default: unaffected
  • affected from 0 to 1.6.1 (incl.)

References

Problem Types

  • CWE-117 Improper output neutralization for logs CWE

Impacts

  • CAPEC-93 Log Injection-Tampering-Forging