CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,137 vulnerabilities with CWE-532
CVE-2019-13509 HIGH
Docker < 18.09.8 - Sensitive Information Disclosure in Debug Log
CVSS 7.5
CVE-2019-10194 MEDIUM
oVirt Metrics - Sensitive Information Disclosure in Log Files
CVSS 5.5
CVE-2019-4299 MEDIUM
IBM Robotic Process Automation <11 - Info Disclosure
CVSS 5.5
CVE-2019-4296 LOW
IBM Robotic Process Automation - Info Disclosure
CVSS 3.3
CVE-2019-1622 MEDIUM
Cisco Data Center Network Manager Unauthenticated Remote Code Execution
CVSS 5.3
CVE-2019-4225 MEDIUM
IBM PureApplication System 2.2.3.0-2.2.5.3 - Sensitive Information Exposure in Log Files
CVSS 4.4
CVE-2019-11271 HIGH
Cloud Foundry BOSH 270.0.0-270.1.0 - Authenticated Credential Exposure via MySQL Database
CVSS 7.8
CVE-2019-3888 CRITICAL
Undertow < 2.0.21 - Sensitive Information Exposure in Log Files
CVSS 9.8
CVE-2019-9929 HIGH
Northern.tech CFEngine Enterprise <3.12.1 - Info Disclosure
CVSS 8.8
CVE-2019-11336 HIGH
Sony Bravia Smart TV - Info Disclosure
CVSS 8.1
CVE-2019-6158 HIGH
Lenovo XClarity Administrator 2.0.0-2.3.x - Sensitive Information Disclosure in Log File
CVSS 8.7
CVE-2019-11492 HIGH
ProjectSend <r1070 - Info Disclosure
CVSS 7.5
CVE-2019-9734 HIGH
Aquarius CMS <4.3.5 - Info Disclosure
CVSS 7.5
CVE-2019-9724 HIGH
aquaverde Aquarius CMS <4.3.5 - Info Disclosure
CVSS 7.5
CVE-2019-6157 MEDIUM
Lenovo Flex System and System x Firmware < 5.30 - Sensitive Information Exposure via IMM2 FFDC Log
CVSS 6.5
CVE-2019-3891 HIGH
Red Hat Satellite 6.4 - Sensitive Information Exposure in Candlepin Log File
CVSS 7.8
CVE-2019-9976 HIGH
DASAN H660RM Firmware 1.03-0022 - Sensitive Information Exposure via Boa Server Log File
CVSS 8.8
CVE-2019-0032 HIGH
Juniper Networks Service Insight <18.1R1 - Info Disclosure
CVSS 7.8
CVE-2019-4143 MEDIUM
IBM Cloud Private 3.1.1-3.1.2 - Sensitive Information Exposure in KMS Plugin Container Log
CVSS 5.5
CVE-2019-3830 HIGH
OpenStack Ceilometer < 12.0.0.0rc1 - Sensitive Information Exposure in Log Files
CVSS 7.8
CVE-2019-7612 CRITICAL
Logstash <5.6.15-6.6.1 - Info Disclosure
CVSS 9.8
CVE-2019-3716 HIGH
RSA Archer GRC Platform < 6.5.2.0 - Authenticated Sensitive Information Exposure in Log Files
CVSS 7.8
CVE-2019-3715 HIGH
RSA Archer GRC Platform < 6.5 SP1 - Authenticated Sensitive Information Exposure in Log Files
CVSS 7.8
CVE-2019-0741 HIGH
Azure IoT Java SDK - Info Disclosure
CVSS 7.5
CVE-2019-8944 MEDIUM
Octopus Deploy < 2019.1.8 - Authenticated Information Exposure via Terraform Log Files
CVSS 6.5
Details
Vulnerabilities 1,137
Exploit Likelihood Medium