CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,170 vulnerabilities with CWE-532
CVE-2023-46175 MEDIUM
IBM Cloud Pak for Multicloud Management <2.3 FP8 - Info Disclosure
CVSS 4.4
CVE-2023-49921 MEDIUM
Elasticsearch 7.0.0-7.17.15 - Sensitive Information Disclosure in Watcher Search Input Debug Logging
CVSS 5.2
CVE-2023-30430 MEDIUM
IBM Security Verify Access 10.0.0-10.0.7.1 - Sensitive Information Exposure in Trace Logs
CVSS 5.5
CVE-2023-40694 MEDIUM
IBM Watson CP4D Data Stores <4.9 - Info Disclosure
CVSS 6.2
CVE-2023-6833 MEDIUM
Hitachi Ops Center Administrator <11.0.1 - Info Disclosure
CVSS 4.4
CVE-2023-22869 MEDIUM
IBM Aspera Faspex 5.0.0-5.0.7 - Sensitive Information Exposure in Log Files
CVSS 5.5
CVE-2023-44989 HIGH
GSheetConnector <5.0.5 - Info Disclosure
CVSS 7.5
CVE-2023-27502 LOW
Intel(R) Local Manageability Service <2316.5.1.2 - Info Disclosure
CVSS 3.3
CVE-2023-43043 MEDIUM
IBM Maximo Application Suite - Info Disclosure
CVSS 5.1
CVE-2023-6814 MEDIUM
Hitachi Cosminexus Component Container <11.30-11.00 - Info Disclosure
CVSS 5.6
CVE-2023-46171 MEDIUM
IBM DS8900F Firmware - Authenticated Sensitive Information Exposure via Log File Enumeration
CVSS 4.3
CVE-2023-50740 MEDIUM
Apache Linkis <=1.4.0 - Sensitive Information Disclosure in Oracle Data Source Logs
CVSS 5.3
CVE-2023-50951 MEDIUM
IBM Cloud Pak for Security 1.10.0.0-1.10.11.0 & QRadar Suite 1.10.12.0-1.10.17.0 - Sensitive Info Disclosure in Logs
CVSS 4.0
CVE-2023-47131 HIGH
N-able PassPortal < 3.29.2 - Sensitive Information Insertion into Log File
CVSS 7.5
CVE-2023-46231 MEDIUM
Splunk Add-on Builder <4.1.4 - Info Disclosure
CVSS 6.8
CVE-2023-46230 HIGH
Splunk Add-on Builder <4.1.4 - Info Disclosure
CVSS 8.2
CVE-2023-51702 MEDIUM
Apache Airflow 2.3.0-2.6.0 Sensitive Information Exposure in Deferrable Mode
CVSS 6.5
CVE-2023-42937 MEDIUM
iPadOS 16.0-16.7.5 - Unprotected User Data Exposure via Log File Insertion
CVSS 5.5
CVE-2023-51508 MEDIUM
Jordy Meow Database Cleaner <0.9.8 - Info Disclosure
CVSS 5.3
CVE-2023-51490 MEDIUM
WPMU DEV Defender Security - Info Disclosure
CVSS 5.3
CVE-2023-51408 MEDIUM
StudioWombat WP Optin Wheel - Info Disclosure
CVSS 5.3
CVE-2023-52146 MEDIUM
404 Solution < 2.33.0 - Sensitive Information Exposure via Log File
CVSS 5.3
CVE-2023-52143 HIGH
WP Stripe Checkout < 1.2.2.37 - Sensitive Data Exposure via Log File
CVSS 7.5
CVE-2023-50253 CRITICAL
Laf <= 1.0.0-beta.13 - Authenticated Sensitive Information Exposure via Pod Log Retrieval
CVSS 9.6
CVE-2023-46742 MEDIUM
CubeFS < 3.3.1 - Sensitive Information Disclosure in Log Files
CVSS 4.8
Details
Vulnerabilities 1,170
Exploit Likelihood Medium