CWE-532
Medium likelihoodInsertion of Sensitive Information into Log File
The product writes sensitive information to a log file.
1,137 vulnerabilities with CWE-532
CVE-2019-0266
HIGH
SAP HANA Extended Application Services 1.0 - Sensitive Information Disclosure in Trace File
CVSS 7.5
CVE-2019-4008
CRITICAL
IBM API Connect 2018.1-2018.4.1.1 - Access Token Exposure in Log Files
CVSS 9.8
CVE-2019-0029
HIGH
Juniper Advanced Threat Prevention 5.0.0-5.0.2 - Authenticated Credential Exposure via Splunk Log File
CVSS 8.8
CVE-2019-0021
HIGH
Juniper Advanced Threat Prevention < 5.0.4 - Authenticated Sensitive Information Exposure in Log Files
CVSS 7.1
CVE-2019-0004
MEDIUM
Juniper Advanced Threat Prevention 5.0.0-5.0.2 - Authenticated Sensitive Information Exposure via Log File
CVSS 5.5
CVE-2019-3500
HIGH
aria2 1.33.1 - Sensitive Information Exposure via HTTP Basic Authentication Log Storage
CVSS 7.8
CVE-2018-20105
MEDIUM
yast2-rmt < 1.2.2 - Sensitive Information Exposure in Log Files
CVSS 4.0
CVE-2018-20956
MEDIUM
Swann SWWHD-INTCAM-HD - Sensitive Information Exposure via Log File
CVSS 5.5
CVE-2018-19583
MEDIUM
GitLab CE/EE <11.3.11-11.5.1 - Info Disclosure
CVSS 6.5
CVE-2018-16856
MEDIUM
Red Hat Openstack Platform Director - Info Disclosure
CVSS 5.5
CVE-2018-19513
HIGH
Webgalamb < 7.0 - Sensitive Information Exposure via Predictable Log File Paths
CVSS 7.5
CVE-2018-18466
HIGH
SecurEnvoy SecurAccess - Sensitive Information Disclosure in Debug Logs
CVSS 7.0
CVE-2018-17499
LOW
Envoy Passport - Sensitive Information Exposure via Unencrypted Log Storage
CVSS 2.9
CVE-2018-19014
MEDIUM
Draeger Infinity Delta/Delta XL/Kappa/Explorer C700 - Unauthenticated Sensitive Info Exposure via Logs
CVSS 6.5
CVE-2018-16889
MEDIUM
Ceph < 13.2.4 - Sensitive Information Disclosure in Debug Logging
CVSS 5.5
CVE-2018-15004
MEDIUM
Coolpad Canvas - Privilege Escalation
CVSS 5.9
CVE-2018-15002
MEDIUM
vivo V7 Firmware - Sensitive Information Insertion into Log File via InputDispatcher
CVSS 4.7
CVE-2018-15001
MEDIUM
vivo V7 Firmware - Sensitive Information Insertion into Log File via com.vivo.bsptest.BSPTestActivity
CVSS 5.5
CVE-2018-14995
MEDIUM
ZTE Blade Vantage/Spark/ZMAX Pro/Champ Firmware - Sensitive Information Exposure via Log File Insertion
CVSS 4.7
CVE-2018-19863
MEDIUM
1Password <7.2.3.BETA-3 - Info Disclosure
CVSS 5.5
CVE-2018-15797
HIGH
Cloud Foundry NFS Volume 1.2.0-1.2.4, 1.5.0-1.5.3, 1.7.0-1.7.2 - Authenticated Credential Exposure via NFS Broker Logs
CVSS 8.4
CVE-2018-19865
HIGH
Qt 5.7.x-5.11.x < 5.11.3 - Keystroke Logging in Virtual Keyboard
CVSS 7.5
CVE-2018-19786
HIGH
HashiCorp Vault <1.0.0 - Info Disclosure
CVSS 8.1
CVE-2018-14700
HIGH
Drobo 5N2 NAS <4.0.5-13.28.96115 - Info Disclosure
CVSS 7.5
CVE-2018-16859
MEDIUM
Ansible Engine <2.8 - Info Disclosure
CVSS 4.2
Details
Vulnerabilities
1,137
Exploit Likelihood
Medium