Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2023-02-17 CVE-2022-43930 Information Exposure Through Log Files vulnerability in IBM DB2 10.5/11.1/11.5
IBM Db2 for Linux, UNIX and Windows 10.5, 11.1, and 11.5 is vulnerable to an Information Disclosure as sensitive information may be included in a log file.
network
low complexity
ibm CWE-532
7.5
2023-02-16 CVE-2022-43954 Information Exposure Through Log Files vulnerability in Fortinet Fortiportal 7.0.0/7.0.1/7.0.2
An insertion of sensitive information into log file vulnerability [CWE-532] in the FortiPortal management interface 7.0.0 through 7.0.2 may allow a remote authenticated attacker to read other devices' passwords in the audit log page.
network
low complexity
fortinet CWE-532
6.5
2023-02-13 CVE-2023-22362 Information Exposure Through Log Files vulnerability in Akindo-Sushiro products
SUSHIRO App for Android outputs sensitive information to the log file, which may result in an attacker obtaining a credential information from the log file.
network
low complexity
akindo-sushiro CWE-532
7.5
2023-02-09 CVE-2023-21435 Information Exposure Through Log Files vulnerability in Samsung Android 11.0/12.0
Exposure of Sensitive Information vulnerability in Fingerprint TA prior to SMR Feb-2023 Release 1 allows attackers to access the memory address information via log.
local
low complexity
samsung CWE-532
5.5
2023-02-07 CVE-2023-24827 Information Exposure Through Log Files vulnerability in Anchore Syft 0.69.0/0.69.1
syft is a a CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesystems.
network
low complexity
anchore CWE-532
7.5
2023-02-06 CVE-2022-42439 Information Exposure Through Log Files vulnerability in IBM products
IBM App Connect Enterprise 11.0.0.17 through 11.0.0.19 and 12.0.4.0 and 12.0.5.0 contains an unspecified vulnerability in the Discovery Connector nodes which may cause a 3rd party system’s credentials to be exposed to a privileged attacker.
network
low complexity
ibm CWE-532
4.9
2023-02-03 CVE-2021-36544 Information Exposure Through Log Files vulnerability in Tpcms Project Tpcms 3.2
Incorrect Access Control issue discovered in tpcms 3.2 allows remote attackers to view sensitive information via path in application URL.
network
low complexity
tpcms-project CWE-532
7.5
2023-02-01 CVE-2023-22573 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x-9.4.0.x contain an insertion of sensitive information into log file vulnerability in cloudpool.
local
low complexity
dell CWE-532
5.5
2023-02-01 CVE-2023-22574 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in platform API of IPMI module.
network
low complexity
dell CWE-532
8.1
2023-02-01 CVE-2023-22575 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 9.0.0.x - 9.4.0.x contain an insertion of sensitive information into log file vulnerability in celog.
network
low complexity
dell CWE-532
8.8