Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2022-03-10 CVE-2022-0725 Information Exposure Through Log Files vulnerability in multiple products
A flaw was found in keepass.
network
low complexity
keepass fedoraproject CWE-532
7.5
2022-03-08 CVE-2021-41543 Information Exposure Through Log Files vulnerability in Siemens Climatix Pol909 Firmware 11.34/11.42
A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module) (All versions < V11.36).
network
low complexity
siemens CWE-532
6.5
2022-02-25 CVE-2022-25374 Information Exposure Through Log Files vulnerability in Hashicorp Terraform Enterprise
HashiCorp Terraform Enterprise v202112-1, v202112-2, v202201-1, and v202201-2 were configured to log inbound HTTP requests in a manner that may capture sensitive data.
network
low complexity
hashicorp CWE-532
7.5
2022-02-10 CVE-2022-0021 Information Exposure Through Log Files vulnerability in Paloaltonetworks Globalprotect
An information exposure through log file vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows that logs the cleartext credentials of the connecting GlobalProtect user when authenticating using Connect Before Logon feature.
local
low complexity
paloaltonetworks CWE-532
5.5
2022-02-10 CVE-2022-20630 Information Exposure Through Log Files vulnerability in Cisco DNA Center
A vulnerability in the audit log of Cisco DNA Center could allow an authenticated, local attacker to view sensitive information in clear text.
local
low complexity
cisco CWE-532
4.4
2022-02-04 CVE-2022-22939 Information Exposure Through Log Files vulnerability in VMWare Cloud Foundation
VMware Cloud Foundation contains an information disclosure vulnerability due to logging of credentials in plain-text within multiple log files on the SDDC Manager.
network
low complexity
vmware CWE-532
4.9
2022-01-25 CVE-2021-36289 Information Exposure Through Log Files vulnerability in Dell EMC Unity Operating Environment
Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain a sensitive information disclosure vulnerability.
local
low complexity
dell CWE-532
7.8
2022-01-18 CVE-2021-41808 Information Exposure Through Log Files vulnerability in M-Files Server
In M-Files Server product with versions before 21.11.10775.0, enabling logging of Federated authentication to event log wrote sensitive information to log.
local
low complexity
m-files CWE-532
2.3
2022-01-17 CVE-2022-22703 Information Exposure Through Log Files vulnerability in Stormshield Network Security 2.0.0/3.0.0
In Stormshield SSO Agent 2.x before 2.1.1 and 3.x before 3.0.2, the cleartext user password and PSK are contained in the log file of the .exe installer.
local
low complexity
stormshield CWE-532
5.5
2022-01-14 CVE-2021-39032 Information Exposure Through Log Files vulnerability in IBM Sterling Gentran 5.3
IBM Sterling Gentran:Server for Microsoft Windows 5.3 stores potentially sensitive information in log files that could be read by a local user.
local
low complexity
ibm CWE-532
5.5