CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,099 vulnerabilities with CWE-532
CVE-2024-47822 MEDIUM
Directus - Info Disclosure
CVSS 4.2
CVE-2024-9621 MEDIUM
Io.quarkiverse.cxf Quarkus-cxf < 3.15.2 - Log Information Exposure
CVSS 5.3
CVE-2024-47913 MEDIUM
Mediawiki < 1.39.9 - Log Information Exposure
CVSS 5.3
CVE-2024-20491 MEDIUM
Cisco Nexus Dashboard Insights - Info Disclosure
CVSS 6.3
CVE-2024-20490 MEDIUM
Cisco Nexus Dashboard - Info Disclosure
CVSS 6.3
CVE-2024-8609 HIGH
Oceanic Software ValeApp <2.0.0 - Info Disclosure
CVSS 7.5
CVE-2024-47083 HIGH
Power Platform Terraform Provider <3.0.0 - Info Disclosure
CVSS 7.5
CVE-2024-7421 MEDIUM
Devolutions Remote Desktop Manager - Log Information Exposure
CVSS 5.5
CVE-2024-43990 MEDIUM
StylemixThemes Masterstudy LMS Starter - Info Disclosure
CVSS 5.3
CVE-2024-44166 MEDIUM
Apple Macos < 13.7 - Log Information Exposure
CVSS 5.5
CVE-2024-40791 LOW
macOS Ventura <13.7 - Info Disclosure
CVSS 3.3
CVE-2024-8775 MEDIUM
Ansible - Info Disclosure
CVSS 5.5
CVE-2024-4472 MEDIUM
GitLab CE/EE <17.1.7-17.2.5-17.3.2 - Info Disclosure
CVSS 4.0
CVE-2024-43781 MEDIUM
SINUMERIK - Info Disclosure
CVSS 5.5
CVE-2024-42344 MEDIUM
Siemens Sinema Remote Connect Client < 3.2 - Log Information Exposure
CVSS 4.4
CVE-2024-20440 HIGH
Cisco Smart Licensing Utility - Info Disclosure
CVSS 7.5
CVE-2024-8365 MEDIUM
Vault <1.17.5 - Info Disclosure
CVSS 6.2
CVE-2024-43444 HIGH
OTRS <7.0.50,8.0.X,2023.X,2024.5.X - Info Disclosure
CVSS 8.2
CVE-2024-42056 MEDIUM
Retool < 3.40.0 - CSRF
CVSS 6.5
CVE-2024-6451 HIGH
AI Engine <2.4.3 - RCE
CVSS 7.2
CVE-2024-41719 MEDIUM
F5 Big-ip Next Central Manager < 20.2.1 - Log Information Exposure
CVSS 4.2
CVE-2024-41978 MEDIUM
Siemens Ruggedcom Rm1224 Lte(4g) EU F... - Log Information Exposure
CVSS 6.5
CVE-2024-37930 MEDIUM
Theme-sphere Smartmag < 9.3.0 - Information Disclosure
CVSS 5.3
CVE-2024-37283 MEDIUM
Elastic Agent < 8.15.0 - Log Information Exposure
CVSS 6.5
CVE-2024-40096 LOW
com.cascadialabs.who 15.0 - Info Disclosure
CVSS 3.3
Details
Vulnerabilities 1,099
Exploit Likelihood Medium