Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2022-03-10 CVE-2022-25827 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch Plugin 2.2.05.21033151
Information Exposure vulnerability in Galaxy Watch Plugin prior to version 2.2.05.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-25828 Information Exposure Through Log Files vulnerability in Samsung Watch Active Plugin 2.2.07.21033151
Information Exposure vulnerability in Watch Active Plugin prior to version 2.2.07.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-25829 Information Exposure Through Log Files vulnerability in Samsung Watch Active2 Plugin 2.2.08.21033151
Information Exposure vulnerability in Watch Active2 Plugin prior to version 2.2.08.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-25830 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch 3 Plugin
Information Exposure vulnerability in Galaxy Watch3 Plugin prior to version 2.2.09.22012751 allows attacker to access password information of connected WiFiAp in the log
local
low complexity
samsung CWE-532
3.3
2022-03-10 CVE-2022-0725 Information Exposure Through Log Files vulnerability in multiple products
A flaw was found in keepass.
network
low complexity
keepass fedoraproject CWE-532
7.5
2022-03-08 CVE-2021-41543 Information Exposure Through Log Files vulnerability in Siemens Climatix Pol909 Firmware 11.34/11.42
A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module) (All versions < V11.36).
network
low complexity
siemens CWE-532
4.0
2022-03-07 CVE-2021-25009 Information Exposure Through Log Files vulnerability in Correosexpress Project Correosexpress
The CorreosExpress WordPress plugin through 2.6.0 generates log files which are publicly accessible, and contain sensitive information such as sender/receiver names, phone numbers, physical and email addresses
network
low complexity
correosexpress-project CWE-532
5.0
2022-02-25 CVE-2022-25374 Information Exposure Through Log Files vulnerability in Hashicorp Terraform Enterprise
HashiCorp Terraform Enterprise v202112-1, v202112-2, v202201-1, and v202201-2 were configured to log inbound HTTP requests in a manner that may capture sensitive data.
network
low complexity
hashicorp CWE-532
5.0
2022-02-10 CVE-2022-0021 Information Exposure Through Log Files vulnerability in Paloaltonetworks Globalprotect
An information exposure through log file vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows that logs the cleartext credentials of the connecting GlobalProtect user when authenticating using Connect Before Logon feature.
1.9
2022-02-10 CVE-2022-20630 Information Exposure Through Log Files vulnerability in Cisco DNA Center
A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive information in clear text.
local
low complexity
cisco CWE-532
4.4