Vulnerabilities > Improper Output Neutralization for Logs

DATE CVE VULNERABILITY TITLE RISK
2024-08-30 CVE-2024-8334 Improper Output Neutralization for Logs vulnerability in Master-Nan Sweet-Cms
A vulnerability was found in master-nan Sweet-CMS up to 5f441e022b8876f07cde709c77b5be6d2f262e3f.
network
low complexity
master-nan CWE-117
8.1
2024-02-02 CVE-2023-38020 Improper Output Neutralization for Logs vulnerability in IBM Soar Qradar Plugin APP 1.0
IBM SOAR QRadar Plugin App 1.0 through 5.0.3 could allow an authenticated user to manipulate output written to log files.
network
low complexity
ibm CWE-117
4.3
2023-12-13 CVE-2023-46713 Improper Output Neutralization for Logs vulnerability in Fortinet Fortiweb
An improper output neutralization for logs in Fortinet FortiWeb 6.2.0 - 6.2.8, 6.3.0 - 6.3.23, 7.0.0 - 7.0.9, 7.2.0 - 7.2.5 and 7.4.0 may allow an attacker to forge traffic logs via a crafted URL of the web application.
network
low complexity
fortinet CWE-117
5.3
2023-07-13 CVE-2023-37275 Improper Output Neutralization for Logs vulnerability in Agpt Auto-Gpt
Auto-GPT is an experimental open-source application showcasing the capabilities of the GPT-4 language model.
network
low complexity
agpt CWE-117
4.3
2023-07-11 CVE-2023-31405 Improper Output Neutralization for Logs vulnerability in SAP Netweaver Application Server for Java 7.50
SAP NetWeaver AS for Java - versions ENGINEAPI 7.50, SERVERCORE 7.50, J2EE-APPS 7.50, allows an unauthenticated attacker to craft a request over the network which can result in unwarranted modifications to a system log without user interaction.
network
low complexity
sap CWE-117
5.3
2023-07-11 CVE-2023-36924 Improper Output Neutralization for Logs vulnerability in SAP ERP Defense Forces and Public Security
While using a specific function, SAP ERP Defense Forces and Public Security - versions 600, 603, 604, 605, 616, 617, 618, 802, 803, 804, 805, 806, 807, allows an authenticated attacker with admin privileges to write arbitrary data to the syslog file.
network
low complexity
sap CWE-117
4.9
2023-02-24 CVE-2023-0595 Improper Output Neutralization for Logs vulnerability in Schneider-Electric products
A CWE-117: Improper Output Neutralization for Logs vulnerability exists that could cause the misinterpretation of log files when malicious packets are sent to the Geo SCADA server's database web port (default 443).
network
low complexity
schneider-electric CWE-117
5.3
2022-09-06 CVE-2022-1522 Improper Output Neutralization for Logs vulnerability in Cognex 3D-A1000 Dimensioning System Firmware 1.0.3(3354)
The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-117: Improper Output Neutralization for Logs, which allows an attacker to create false logs that show the password as having been changed when it is not, complicating forensics.
network
low complexity
cognex CWE-117
5.3
2020-09-11 CVE-2020-14332 Improper Output Neutralization for Logs vulnerability in multiple products
A flaw was found in the Ansible Engine when using module_args.
local
low complexity
redhat debian CWE-117
5.5
2020-06-25 CVE-2020-4072 Improper Output Neutralization for Logs vulnerability in Jhipster Generator-Jhipster-Kotlin 1.6.0
In generator-jhipster-kotlin version 1.6.0 log entries are created for invalid password reset attempts.
network
low complexity
jhipster CWE-117
5.3