CWE-532

Medium likelihood

Insertion of Sensitive Information into Log File

Parent: CWE-538 - Insertion of Sensitive Information into Externally-Accessible File or Directory

The product writes sensitive information to a log file.

1,099 vulnerabilities with CWE-532
CVE-2016-6799 HIGH
Apache Cordova < 5.2.2 - Log Information Exposure
CVSS 7.5
CVE-2016-9985 MEDIUM
IBM Cognos Business Intelligence - Log Information Exposure
CVSS 5.5
CVE-2016-8233 CRITICAL
Lenovo XClarity Administrator <1.2.2 - Info Disclosure
CVSS 9.8
CVE-2016-9344 HIGH
Moxa MiiNePort - Info Disclosure
CVSS 7.5
CVE-2016-8346 HIGH
Moxa EDR-810 - Privilege Escalation
CVSS 7.5
CVE-2016-8912 MEDIUM
IBM Kenexa LMS on Cloud <13.2.4 - Info Disclosure
CVSS 4.3
CVE-2016-0296 LOW
IBM Tivoli Endpoint Manager - Info Disclosure
CVSS 3.3
CVE-2016-9882 HIGH
Cloudfoundry Capi-release < 1.11.0 - Log Information Exposure
CVSS 7.5
CVE-2016-4443 MEDIUM
Red Hat Enterprise Virtualization (RHEV) Manager 3.6 - Info Disclosure
CVSS 5.5
CVE-2016-2943 LOW
IBM Bigfix Remote Control < 9.1.2 - Log Information Exposure
CVSS 1.9
CVE-2016-2928 MEDIUM
IBM Bigfix Remote Control < 9.1.2 - Log Information Exposure
CVSS 4.3
CVE-2016-5967 MEDIUM
IBM Rational Asset Analyzer <6.1.0 - Info Disclosure
CVSS 5.5
CVE-2016-5432 LOW
Redhat Enterprise Virtualization - Log Information Exposure
CVSS 3.3
CVE-2016-0879 HIGH
Moxa Secure Router EDR-G903 <3.4.12 - Info Disclosure
CVSS 7.5
CVE-2016-0875 HIGH
Moxa Secure Router EDR-G903 <3.4.12 - Info Disclosure
CVSS 7.5
CVE-2015-1343 LOW
Unity-Scope-GDrive - Info Disclosure
CVSS 2.0
CVE-2015-3243 MEDIUM
rsyslog - Info Disclosure
CVSS 5.5
CVE-2015-8977 HIGH
Mybb Merge System < 1.8.5 - Log Information Exposure
CVSS 7.5
CVE-2014-3536 MEDIUM
Redhat Cloudforms Management Engine - Log Information Exposure
CVSS 5.5
CVE-2013-1771 HIGH
Monkey - Log Information Exposure
CVSS 7.5
CVE-2013-6384
Openstack Ceilometer < 2013.2 - Log Information Exposure
CVE-2012-1156 HIGH
Moodle < 2.2.2 - Log Information Exposure
CVSS 7.5
CVE-2011-1943
NetworkManager <0.8.999-3 - Info Disclosure
CVE-2001-1556
Apache - Info Disclosure
Details
Vulnerabilities 1,099
Exploit Likelihood Medium