CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,170 vulnerabilities with CWE-532
CVE-2023-46667 HIGH
Fleet Server <8.10.3 - Info Disclosure
CVSS 8.1
CVE-2023-46668 MEDIUM
Elastic Endpoint <8.10.3 - Info Disclosure
CVSS 4.6
CVE-2023-42857 LOW
iPadOS < 17.1 - Unprotected User Data Exposure via Log File Insertion
CVSS 3.3
CVE-2023-41254 MEDIUM
iPadOS < 16.7.2 - Sensitive Information Disclosure in Log Entries
CVSS 5.5
CVE-2023-40425 MEDIUM
macOS 12.0.0-12.7.0 - Unprotected User Data Exposure via Log File
CVSS 4.4
CVE-2023-40405 LOW
macOS - Unprotected Sensitive Location Information Exposure in Log Files
CVSS 3.3
CVE-2023-44483 MEDIUM
Apache Santuario XML Security for Java < 2.2.6, 2.3.0-2.3.4 - Private Key Disclosure in Log Files
CVSS 6.5
CVE-2023-45825 MEDIUM
ydb-go-sdk 3.48.6-3.53.2 - Sensitive Information Exposure in Log Files via Credentials Serialization
CVSS 5.5
CVE-2023-45809 LOW
Wagtail < 4.1.9 - Authenticated Information Disclosure via User Account Bulk Action URL
CVSS 2.7
CVE-2023-5339 MEDIUM
Mattermost Desktop < 5.4.0 - Sensitive Information Exposure via Keystroke Logging
CVSS 4.7
CVE-2023-40682 MEDIUM
IBM App Connect Enterprise <12.0.8.0 - Info Disclosure
CVSS 4.4
CVE-2023-41263 LOW
Plixer Scrutinizer <19.3.1 - Info Disclosure
CVSS 3.7
CVE-2023-25604 MEDIUM
Fortinet FortiGuest 1.0.0 - Sensitive Information Exposure in RADIUS Logs
CVSS 5.5
CVE-2023-5499 HIGH
Shenzhen Reachfar v28 - Sensitive Information Exposure via Log Directory
CVSS 7.5
CVE-2023-43485 MEDIUM
F5 BIG-IQ 8.0.0-8.2.0.1 & BIG-IP 13.1.0-13.1.5 - TACACS+ Sensitive Information Disclosure
CVSS 5.5
CVE-2023-41253 MEDIUM
BIG-IP DNS and LTM - Sensitive Information Disclosure in Audit Log
CVSS 5.5
CVE-2023-39447 MEDIUM
F5 BIG-IP APM Guided Configuration - Sensitive Information Disclosure in restnoded Log
CVSS 4.4
CVE-2023-5182 MEDIUM
Subiquity <23.09.1 - Info Disclosure
CVSS 5.5
CVE-2023-45241 MEDIUM
Acronis Agent < c23.06 - Sensitive Information Exposure via Log File Insertion
CVSS 5.5
CVE-2023-4380 MEDIUM
Ansible Automation - Info Disclosure
CVSS 6.3
CVE-2023-43261 HIGH
Milesight <v35.3.0.7 - Info Disclosure
CVSS 7.5
CVE-2023-3350 HIGH
IBERMATICA RPS 2019 - Info Disclosure
CVSS 8.2
CVE-2023-3349 HIGH
IBERMATICA RPS 2019 - Info Disclosure
CVSS 8.2
CVE-2023-3335 MEDIUM
Hitachi Ops Center Administrator <10.9.3-00 - Info Disclosure
CVSS 6.5
CVE-2023-44155 HIGH
Acronis Cyber Protect <15 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 1,170
Exploit Likelihood Medium