CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,137 vulnerabilities with CWE-532
CVE-2021-21546 HIGH
Dell EMC NetWorker < 19.3.0.4 and 19.4.0.0 - Information Disclosure in Log Files
CVSS 7.8
CVE-2021-28131 HIGH
Apache Impala < 4.0.0 - Authenticated Session Hijacking via Logged Session Secrets
CVSS 7.5
CVE-2021-32767 MEDIUM
TYPO3 <9.5.27, <10.4.17, <11.3.0 - Info Disclosure
CVSS 5.3
CVE-2021-34689 MEDIUM
iDrive RemotePC < 7.6.48 - Authenticated Information Disclosure via Log File
CVSS 5.5
CVE-2021-29759 LOW
IBM App Connect Enterprise Certified Container 1.0-1.3 - Sensitive Information Exposure in Log Files
CVSS 2.3
CVE-2021-35299 HIGH
Zammad 1.0.0-4.0.0 - Incorrect Access Control via Email Connection Configuration Probing
CVSS 7.5
CVE-2021-0549 MEDIUM
Android 11 - Bluetooth MAC Address Disclosure via BondStateMachine Log
CVSS 4.4
CVE-2021-25423 MEDIUM
Watch Active2 PlugIn <2.2.08.21033151 - Info Disclosure
CVSS 5.5
CVE-2021-25422 MEDIUM
Watch Active PlugIn <2.2.07.21033151 - Info Disclosure
CVSS 5.5
CVE-2021-25421 MEDIUM
Galaxy Watch3 PlugIn <2.2.09.21033151 - Info Disclosure
CVSS 5.5
CVE-2021-25420 MEDIUM
Galaxy Watch PlugIn <2.2.05.21033151 - Info Disclosure
CVSS 5.5
CVE-2021-3039 LOW
Palo Alto Networks Prisma Cloud Compute - Info Disclosure
CVSS 3.8
CVE-2021-22219 MEDIUM
GitLab 9.5.0-13.10.4 13.11.0-13.11.4 13.12.0-13.12.1 - Sensitive Information Exposure in Log Files
CVSS 4.4
CVE-2021-21558 HIGH
Dell EMC NetWorker 18.1.0.1-19.4.0.1 - Information Disclosure via Local Log Files
CVSS 8.2
CVE-2021-22516 HIGH
Micro Focus SAPIM <2.0.0 - Info Disclosure
CVSS 7.5
CVE-2021-3425 MEDIUM
Red Hat JBoss A-MQ - Sensitive Information Disclosure in Log Files
CVSS 4.4
CVE-2021-20191 MEDIUM
Oracle Virtualization < 2.8.19 - Log Information Exposure
CVSS 5.5
CVE-2021-20178 MEDIUM
Ansible < 2.9.18 - Credential Disclosure in Bitbucket Pipeline Variable Module Logs
CVSS 5.5
CVE-2021-3528 HIGH
noobaa-operator <5.7.0 - Privilege Escalation
CVSS 8.8
CVE-2021-32074 HIGH
HashiCorp vault-action < 2.2.0 - Sensitive Information Exposure via Multi-Line Secret Log Masking Bypass
CVSS 7.5
CVE-2021-20536 MEDIUM
IBM Spectrum Protect Plus File Systems Agent <10.1.7 - Info Disclosure
CVSS 6.2
CVE-2021-26908 LOW
Automox Agent < 31 - Sensitive Information Exposure in Local Log Files
CVSS 3.3
CVE-2021-31546 MEDIUM
MediaWiki < 1.35.2 - Sensitive Information Disclosure in AbuseFilter Log
CVSS 4.3
CVE-2021-3037 LOW
Palo Alto Networks PAN-OS - Info Disclosure
CVSS 2.3
CVE-2021-3036 MEDIUM
Palo Alto Networks PAN-OS - Info Disclosure
CVSS 4.4
Details
Vulnerabilities 1,137
Exploit Likelihood Medium