Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2022-02-10 CVE-2022-20630 Information Exposure Through Log Files vulnerability in Cisco DNA Center
A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive information in clear text.
local
low complexity
cisco CWE-532
4.4
2022-02-04 CVE-2022-22939 Information Exposure Through Log Files vulnerability in VMWare Cloud Foundation
VMware Cloud Foundation contains an information disclosure vulnerability due to logging of credentials in plain-text within multiple log files on the SDDC Manager.
network
low complexity
vmware CWE-532
4.9
2022-01-25 CVE-2021-36289 Information Exposure Through Log Files vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain a sensitive information disclosure vulnerability.
local
low complexity
dell CWE-532
7.8
2022-01-18 CVE-2021-41808 Information Exposure Through Log Files vulnerability in M-Files Server
In M-Files Server product with versions before 21.11.10775.0, enabling logging of Federated authentication to event log wrote sensitive information to log.
local
low complexity
m-files CWE-532
2.3
2022-01-17 CVE-2022-22703 Information Exposure Through Log Files vulnerability in Stormshield Network Security 2.0.0/3.0.0
In Stormshield SSO Agent 2.x before 2.1.1 and 3.x before 3.0.2, the cleartext user password and PSK are contained in the log file of the .exe installer.
local
low complexity
stormshield CWE-532
5.5
2022-01-14 CVE-2021-39032 Information Exposure Through Log Files vulnerability in IBM Sterling Gentran 5.3
IBM Sterling Gentran:Server for Microsoft Windows 5.3 stores potentially sensitive information in log files that could be read by a local user.
local
low complexity
ibm CWE-532
5.5
2022-01-12 CVE-2021-45449 Information Exposure Through Log Files vulnerability in Docker Desktop 4.3.0/4.3.1
Docker Desktop version 4.3.0 and 4.3.1 has a bug that may log sensitive information (access token or password) on the user's machine during login.
local
low complexity
docker CWE-532
5.5
2022-01-11 CVE-2021-45034 Information Exposure Through Log Files vulnerability in Siemens products
A vulnerability has been identified in CP-8000 MASTER MODULE WITH I/O -25/+70°C (All versions < V16.20), CP-8000 MASTER MODULE WITH I/O -40/+70°C (All versions < V16.20), CP-8021 MASTER MODULE (All versions < V16.20), CP-8022 MASTER MODULE WITH GPRS (All versions < V16.20).
network
low complexity
siemens CWE-532
7.5
2022-01-04 CVE-2021-34797 Information Exposure Through Log Files vulnerability in Apache Geode
Apache Geode versions up to 1.12.4 and 1.13.4 are vulnerable to a log file redaction of sensitive information flaw when using values that begin with characters other than letters or numbers for passwords and security properties with the prefix "sysprop-", "javax.net.ssl", or "security-".
network
low complexity
apache CWE-532
7.5
2021-12-15 CVE-2021-0991 Information Exposure Through Log Files vulnerability in Google Android 12.0
In OnMetadataChangedListener of AdvancedBluetoothDetailsHeaderController.java, there is a possible leak of Bluetooth MAC addresses due to log information disclosure.
low complexity
google CWE-532
2.4