Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2021-08-30 CVE-2021-22024 Information Exposure Through Log Files vulnerability in VMWare products
The vRealize Operations Manager API (8.x prior to 8.5) contains an arbitrary log-file read vulnerability.
network
low complexity
vmware CWE-532
5.0
2021-08-30 CVE-2021-27019 Information Exposure Through Log Files vulnerability in Puppet Enterprise
PuppetDB logging included potentially sensitive system information.
network
low complexity
puppet CWE-532
4.0
2021-08-23 CVE-2021-39291 Information Exposure Through Log Files vulnerability in Netmodule Router Software 4.3.0.0/4.4.0.0
Certain NetModule devices allow credentials via GET parameters to CLI-PHP.
network
low complexity
netmodule CWE-532
8.8
2021-08-16 CVE-2021-36278 Information Exposure Through Log Files vulnerability in Dell EMC Powerscale Onefs
Dell EMC PowerScale OneFS versions 8.2.x, 9.1.0.x, and 9.1.1.1 contain a sensitive information exposure vulnerability in log files.
local
low complexity
dell CWE-532
5.5
2021-08-10 CVE-2021-21597 Information Exposure Through Log Files vulnerability in Dell Wyse Thinos 9.0/9.1
Dell Wyse ThinOS, version 9.0, contains a Sensitive Information Disclosure Vulnerability.
local
low complexity
dell CWE-532
2.1
2021-08-10 CVE-2021-21598 Information Exposure Through Log Files vulnerability in Dell Wyse Thinos 9.0/9.1
Dell Wyse ThinOS, versions 9.0, 9.1, and 9.1 MR1, contain a Sensitive Information Disclosure Vulnerability.
local
low complexity
dell CWE-532
2.1
2021-08-10 CVE-2021-21601 Information Exposure Through Log Files vulnerability in Dell products
Dell EMC Data Protection Search, 19.4 and prior, and IDPA, 2.6.1 and prior, contain an Information Exposure in Log File Vulnerability in CIS.
local
low complexity
dell CWE-532
2.1
2021-07-31 CVE-2021-37759 Information Exposure Through Log Files vulnerability in Graylog
A Session ID leak in the DEBUG log file in Graylog before 4.1.2 allows attackers to escalate privileges (to the access level of the leaked session ID).
network
low complexity
graylog CWE-532
7.5
2021-07-31 CVE-2021-37760 Information Exposure Through Log Files vulnerability in Graylog
A Session ID leak in the audit log in Graylog before 4.1.2 allows attackers to escalate privileges (to the access level of the leaked session ID).
network
low complexity
graylog CWE-532
7.5
2021-07-29 CVE-2021-21546 Information Exposure Through Log Files vulnerability in Dell EMC Networker
Dell EMC NetWorker versions 18.x,19.x prior to 19.3.0.4 and 19.4.0.0 contain an Information Disclosure in Log Files vulnerability.
local
low complexity
dell CWE-532
2.1