CWE-532
Medium likelihoodInsertion of Sensitive Information into Log File
The product writes sensitive information to a log file.
1,137 vulnerabilities with CWE-532
CVE-2022-25518
MEDIUM
CMDBuild 3.0-3.3.2 - Sensitive Information Disclosure in Temporary Log Table
CVSS 6.5
CVE-2022-0652
LOW
Sophos UTM <9.710 - Info Disclosure
CVSS 3.3
CVE-2022-25830
LOW
Samsung Galaxy Watch3 Plugin < 2.2.03.22012751 - Information Exposure via Log File
CVSS 1.9
CVE-2022-25829
LOW
Samsung Watch Active2 Plugin < 2.2.08.22012751 - Information Exposure via Log File
CVSS 1.9
CVE-2022-25828
LOW
Samsung Watch Active Plugin < 2.2.07.22012751 - Information Exposure via Log File
CVSS 1.9
CVE-2022-25827
LOW
Samsung Galaxy Watch Plugin < 2.2.05.22012751 - Information Exposure via Log File
CVSS 1.9
CVE-2022-25826
LOW
Samsung Galaxy Watch 3 Plugin < 2.2.03.22012751 - Sensitive Information Exposure in Log Files
CVSS 1.9
CVE-2022-25823
LOW
Samsung Galaxy Watch Plugin < 2.2.05.220126741 - Information Exposure via Log File
CVSS 1.9
CVE-2022-0725
HIGH
KeePass - Information Exposure via Plain Text Password Logging
CVSS 7.5
CVE-2022-25374
HIGH
Terraform Enterprise < 202202-1 - Sensitive Data Exposure via HTTP Request Logging
CVSS 7.5
CVE-2022-20630
MEDIUM
Cisco Catalyst Center 2.1.2.0-2.2.2.8 - Authenticated Sensitive Information Exposure in Audit Log
CVSS 4.4
CVE-2022-0021
LOW
GlobalProtect 5.2 < 5.2.9 - Cleartext Credential Exposure in Log Files
CVSS 3.3
CVE-2022-22939
MEDIUM
VMware Cloud Foundation 3.0-3.10.2.2 - Credential Disclosure in SDDC Manager Log Files
CVSS 4.9
CVE-2022-0338
MEDIUM
Conda loguru <0.5.3 - Info Disclosure
CVSS 4.3
CVE-2022-22703
MEDIUM
Stormshield SSO Agent 2.x < 2.1.1 and 3.x < 3.0.2 - Sensitive Information Exposure in Installer Log File
CVSS 5.5
CVE-2021-21508
MEDIUM
Dell VxRail < 7.0.200 - Insertion of Sensitive Information into Log File
CVSS 6.7
CVE-2021-22533
MEDIUM
OpenText eDirectory 9.2.4.0000 - Info Disclosure
CVSS 6.5
CVE-2021-22518
MEDIUM
OpenText Identity Manager AzureAD Driver <5.1.4.0 - Info Disclosure
CVSS 5.8
CVE-2021-22143
LOW
Elastic APM .NET Agent < 1.10.0 - Sensitive Information Exposure via HTTP Header Logging
CVSS 2.1
CVE-2021-32050
MEDIUM
MongoDB Drivers - Sensitive Information Exposure via Command Listener Event Publication
CVSS 4.2
CVE-2021-3429
MEDIUM
cloud-init < 21.2 - Sensitive Information Disclosure via World-Readable Log File
CVSS 5.5
CVE-2021-3684
MEDIUM
OpenShift Assisted Installer < 1.0.25.3 - Authenticated Image Pull Secret Exposure in Installation Logs
CVSS 5.5
CVE-2021-36544
HIGH
tpcms 3.2 - Incorrect Access Control and Sensitive Information Exposure via Application URL
CVSS 7.5
CVE-2021-39011
MEDIUM
IBM Cloud Pak for Security - Info Disclosure
CVSS 4.2
CVE-2021-44862
HIGH
Netskope < 91 - Authenticated Sensitive Information Exposure in Client Logs
CVSS 8.4
Details
Vulnerabilities
1,137
Exploit Likelihood
Medium