CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,099 vulnerabilities with CWE-532
CVE-2021-44234 MEDIUM
SAP Business One - Log Information Exposure
CVSS 5.5
CVE-2021-39032 MEDIUM
IBM Sterling Gentran - Log Information Exposure
CVSS 5.5
CVE-2021-45449 MEDIUM
Docker Desktop - Log Information Exposure
CVSS 5.5
CVE-2021-45034 HIGH
Siemens Cp-8000 Master Module With I/... - Improper Access Control
CVSS 7.5
CVE-2021-34797 HIGH
Apache Geode < 1.12.4 - Log Information Exposure
CVSS 7.5
CVE-2021-36318 MEDIUM
Dell EMC Avamar <19.5 - Info Disclosure
CVSS 6.7
CVE-2021-0997 MEDIUM
Android <12 - Info Disclosure
CVSS 5.5
CVE-2021-0991 LOW
Android <12 - Info Disclosure
CVSS 2.4
CVE-2021-37861 MEDIUM
Mattermost < 6.0.2 - Log Information Exposure
CVSS 5.8
CVE-2021-34800 HIGH
Acronis Agent < c21.06 - Log Information Exposure
CVSS 7.5
CVE-2021-21561 HIGH
Dell Emc Powerscale Onefs - Log Information Exposure
CVSS 7.8
CVE-2021-37036 MEDIUM
Huawei Ecns280 TD Firmware - Log Information Exposure
CVSS 5.5
CVE-2021-36340 HIGH
Dell EMC SCG <5.00.00.10 - Info Disclosure
CVSS 7.8
CVE-2021-22030 MEDIUM
Greenplum < 5.28.14 - Log Information Exposure
CVSS 6.5
CVE-2021-27026 MEDIUM
Puppet < 2021.4.0 - Log Information Exposure
CVSS 4.4
CVE-2021-0148 MEDIUM
Intel(R) SSD DC - Info Disclosure
CVSS 4.4
CVE-2021-3791 MEDIUM
Motorola-branded Binatone Hubble Cameras - Info Disclosure
CVSS 6.5
CVE-2021-40364 MEDIUM
SIMATIC PCS 7 & WinCC - Info Disclosure
CVSS 5.5
CVE-2021-39913 MEDIUM
Gitlab < 14.2.6 - Log Information Exposure
CVSS 4.4
CVE-2021-20129 HIGH
Draytek Vigorconnect - Log Information Exposure
CVSS 7.5
CVE-2021-39900 LOW
Gitlab < 14.1.7 - Log Information Exposure
CVSS 2.0
CVE-2021-39246 MEDIUM
Torproject Tor Browser < 10.5.6 - Log Information Exposure
CVSS 6.1
CVE-2021-23046 MEDIUM
Guided Configuration <8.0.0 - Info Disclosure
CVSS 4.9
CVE-2021-32724 CRITICAL
check-spelling - Info Disclosure
CVSS 9.9
CVE-2021-32801 MEDIUM
Nextcloud <20.0.12,21.0.4,22.1.0 - Info Disclosure
CVSS 5.5
Details
Vulnerabilities 1,099
Exploit Likelihood Medium