Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2021-07-22 CVE-2021-28131 Information Exposure Through Log Files vulnerability in Apache Impala
Impala sessions use a 16 byte secret to verify that the session is not being hijacked by another user.
network
high complexity
apache CWE-532
7.5
2021-07-21 CVE-2020-21933 Information Exposure Through Log Files vulnerability in Motorola CX2 Firmware 1.0.2
An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where the admin password and private key could be found in the log tar package.
network
low complexity
motorola CWE-532
5.0
2021-07-20 CVE-2020-23284 Information Exposure Through Log Files vulnerability in MV Idce 1.0
Information disclosure in aspx pages in MV's IDCE application v1.0 allows an attacker to copy and paste aspx pages in the end of the URL application that connect into the database which reveals internal and sensitive information without logging into the web application.
network
low complexity
mv CWE-532
5.0
2021-07-20 CVE-2021-32767 Information Exposure Through Log Files vulnerability in Typo3
TYPO3 is an open source PHP based web content management system.
network
typo3 CWE-532
3.5
2021-07-15 CVE-2021-34689 Information Exposure Through Log Files vulnerability in Idrive Remotepc
iDrive RemotePC before 7.6.48 on Windows allows information disclosure.
local
low complexity
idrive CWE-532
2.1
2021-07-07 CVE-2021-29759 Information Exposure Through Log Files vulnerability in IBM APP Connect Enterprise Certified Container
IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, and 1.3 could allow a privileged user to obtain sensitive information from internal log files.
local
low complexity
ibm CWE-532
2.1
2021-07-07 CVE-2020-24038 Information Exposure Through Log Files vulnerability in Eram products
myFax version 229 logs sensitive information in the export log module which allows any user to access critical information.
network
low complexity
eram CWE-532
4.0
2021-06-28 CVE-2021-35299 Information Exposure Through Log Files vulnerability in Zammad
Incorrect Access Control in Zammad 1.0.x up to 4.0.0 allows attackers to obtain sensitive information via email connection configuration probing.
network
low complexity
zammad CWE-532
5.0
2021-06-22 CVE-2021-0549 Information Exposure Through Log Files vulnerability in Google Android 11.0
In sspRequestCallback of BondStateMachine.java, there is a possible leak of Bluetooth MAC addresses due to log information disclosure.
local
low complexity
google CWE-532
2.1
2021-06-11 CVE-2021-25420 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch Plugin
Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.
local
low complexity
samsung CWE-532
2.1