CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,137 vulnerabilities with CWE-532
CVE-2022-30148 MEDIUM
Windows 10, 11, Server 2016, 2019, 2022 - Information Disclosure via Desired State Configuration
CVSS 5.5
CVE-2022-31047 MEDIUM
TYPO3 <7.6.57 ELTS, <8.7.47 ELTS, <9.5.34 ELTS, <10.4.29, <11.5.11 ...
CVSS 5.3
CVE-2022-32254 MEDIUM
SINEMA Remote Connect Server < 3.1 - Sensitive Information Exposure via HTTP POST Request
CVSS 4.3
CVE-2022-32565 HIGH
Couchbase Server 7.0.0-7.0.4 - Sensitive Information Disclosure in Backup Service Log
CVSS 7.5
CVE-2022-32193 MEDIUM
Couchbase Server 6.6.0-6.6.3 and 7.x < 7.0.4 - Sensitive Information Exposure in Log Files
CVSS 6.5
CVE-2022-30742 LOW
Find My Mobile <7.2.24.12 - Info Disclosure
CVSS 3.3
CVE-2022-30741 LOW
Find My Mobile <7.2.24.12 - Info Disclosure
CVSS 3.3
CVE-2022-30733 MEDIUM
Samsung Account <13.2.00.6 - Info Disclosure
CVSS 4.0
CVE-2022-20807 MEDIUM
Cisco TelePresence VCS < X14.0.7 - Authenticated Sensitive Info Disclosure via Log File Insertion
CVSS 4.3
CVE-2022-20806 MEDIUM
Cisco TelePresence VCS < X14.0.7 Authenticated Sensitive Info Disclosure via Log File Insertion
CVSS 4.3
CVE-2022-20809 MEDIUM
Cisco TelePresence VCS < X14.0.7 Authenticated Info Disclosure via Log File Insertion
CVSS 4.3
CVE-2022-29928 MEDIUM
JetBrains TeamCity < 2022.04 - Sensitive Information Disclosure in Agent Logs
CVSS 4.4
CVE-2022-28161 MEDIUM
Brocade SANNav < 2.2.0 - Authenticated Sensitive Information Exposure in Debug Log
CVSS 5.5
CVE-2022-28859 MEDIUM
F5 BIG-IP <15.1.5.1,14.1.4.6 - Info Disclosure
CVSS 6.5
CVE-2022-27636 MEDIUM
F5 Big-ip Access Policy Manager < 7.2.1 - Log Information Exposure
CVSS 5.5
CVE-2022-29869 MEDIUM
cifs-utils <= 6.14 - Information Disclosure via Verbose Logging
CVSS 5.3
CVE-2022-29810 MEDIUM
Hashicorp go-getter < 1.5.11 - Sensitive Information Disclosure in Log Files
CVSS 5.5
CVE-2022-27888 MEDIUM
Foundry Issues 2.244.0-2.249.0 - Sensitive Information Exposure in Log Files
CVSS 5.5
CVE-2022-24875 MEDIUM
cve-services <= 1.1.1 - Sensitive Information Disclosure in Log Files
CVSS 5.3
CVE-2022-26907 MEDIUM
Azure SDK for .NET - Info Disclosure
CVSS 5.3
CVE-2022-1157 LOW
GitLab < 14.7.7, 14.8 < 14.8.5, 14.9 < 14.9.2 - Sensitive Information Exposure via Exception Log
CVSS 2.6
CVE-2022-27442 HIGH
TPCMS v3.2 - Sensitive Information Exposure via ThinkPHP Log Directory
CVSS 7.5
CVE-2022-24758 HIGH
Jupyter Notebook <6.4.9 - Info Disclosure
CVSS 7.5
CVE-2022-27192 HIGH
DVS Avilys < 3.5.58 - Unauthenticated Sensitive Information Exposure via Reporting Module
CVSS 7.5
CVE-2022-24757 HIGH
Jupyter Server <1.15.4 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 1,137
Exploit Likelihood Medium