Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2024-07-07 CVE-2024-40596 Information Exposure Through Log Files vulnerability in Mediawiki
An issue was discovered in the CheckUser extension for MediaWiki through 1.42.1.
network
low complexity
mediawiki CWE-532
4.3
2024-07-07 CVE-2024-40598 Information Exposure Through Log Files vulnerability in Mediawiki
An issue was discovered in the CheckUser extension for MediaWiki through 1.42.1.
network
low complexity
mediawiki CWE-532
4.3
2024-06-24 CVE-2024-6104 Information Exposure Through Log Files vulnerability in Hashicorp Retryablehttp
go-retryablehttp prior to 0.7.7 did not sanitize urls when writing them to its log file.
local
low complexity
hashicorp CWE-532
5.5
2024-06-21 CVE-2022-44587 Information Exposure Through Log Files vulnerability in Melapress WP 2FA
Insertion of Sensitive Information into Log File vulnerability in WP 2FA allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WP 2FA: from n/a through 2.6.3.
network
low complexity
melapress CWE-532
7.5
2024-06-12 CVE-2024-5557 Information Exposure Through Log Files vulnerability in Schneider-Electric Spacelogic As-B Firmware and Spacelogic As-P Firmware
CWE-532: Insertion of Sensitive Information into Log File vulnerability exists that could cause exposure of SNMP credentials when an attacker has access to the controller logs.
low complexity
schneider-electric CWE-532
4.5
2024-06-06 CVE-2024-0912 Information Exposure Through Log Files vulnerability in Johnsoncontrols Software House C-Cure 9000 Siteserver 3.00.2
Under certain circumstances the Microsoft® Internet Information Server (IIS) used to host the C•CURE 9000 Web Server will log Microsoft Windows credential details within logs.
local
low complexity
johnsoncontrols CWE-532
4.2
2024-06-04 CVE-2024-25095 Information Exposure Through Log Files vulnerability in Codeparrots Easy Forms for Mailchimp 6.9.0
Insertion of Sensitive Information into Log File vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affects Easy Forms for Mailchimp: from n/a through 6.9.0.
network
low complexity
codeparrots CWE-532
7.5
2024-05-03 CVE-2024-28072 A highly privileged account can overwrite arbitrary files on the system with log output.
low complexity
CWE-532
5.7
2024-04-10 CVE-2024-31353 Information Exposure Through Log Files vulnerability in Tribulant Slideshow Gallery
Insertion of Sensitive Information into Log File vulnerability in Tribulant Slideshow Gallery.This issue affects Slideshow Gallery: from n/a through 1.7.8.
network
low complexity
tribulant CWE-532
5.3
2024-03-27 CVE-2024-29945 Information Exposure Through Log Files vulnerability in Splunk
In Splunk Enterprise versions below 9.2.1, 9.1.4, and 9.0.9, the software potentially exposes authentication tokens during the token validation process.
network
low complexity
splunk CWE-532
7.2