Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2024-09-12 CVE-2021-22518 Information Exposure Through Log Files vulnerability in Opentext Identity Manager Azuread Driver
A vulnerability identified in OpenText™ Identity Manager AzureAD Driver that allows logging of sensitive information into log file.
local
low complexity
opentext CWE-532
5.5
2024-09-12 CVE-2021-22533 Information Exposure Through Log Files vulnerability in Microfocus Edirectory
Possible Insertion of Sensitive Information into Log File Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.4.0000.
network
low complexity
microfocus CWE-532
critical
9.1
2024-09-12 CVE-2022-26322 Information Exposure Through Log Files vulnerability in Netiq Identity Manager Rest Driver
Possible Insertion of Sensitive Information into Log File Vulnerability in Identity Manager has been discovered in OpenText™ Identity Manager REST Driver.
network
low complexity
netiq CWE-532
7.5
2024-09-10 CVE-2024-42344 Information Exposure Through Log Files vulnerability in Siemens Sinema Remote Connect Client
A vulnerability has been identified in SINEMA Remote Connect Client (All versions < V3.2 SP2).
local
low complexity
siemens CWE-532
5.5
2024-09-04 CVE-2024-20440 Information Exposure Through Log Files vulnerability in Cisco Smart License Utility 2.0.0/2.1.0/2.2.0
A vulnerability in Cisco Smart Licensing Utility could allow an unauthenticated, remote attacker to access sensitive information. This vulnerability is due to excessive verbosity in a debug log file.
network
low complexity
cisco CWE-532
7.5
2024-09-02 CVE-2024-8365 Information Exposure Through Log Files vulnerability in Hashicorp Vault
Vault Community Edition and Vault Enterprise experienced a regression where functionality that HMAC’d sensitive headers in the configured audit device, specifically client tokens and token accessors, was removed.
network
low complexity
hashicorp CWE-532
6.5
2024-08-22 CVE-2024-42056 Information Exposure Through Log Files vulnerability in Retool
Retool (self-hosted enterprise) through 3.40.0 inserts resource authentication credentials into sent data.
network
low complexity
retool CWE-532
6.5
2024-08-14 CVE-2024-41719 Information Exposure Through Log Files vulnerability in F5 Big-Ip Next Central Manager
When generating QKView of BIG-IP Next instance from the BIG-IP Next Central Manager (CM), F5 iHealth credentials will be logged in the BIG-IP Central Manager logs.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
local
low complexity
f5 CWE-532
5.5
2024-08-13 CVE-2024-41978 Information Exposure Through Log Files vulnerability in Siemens products
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.1), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.1), SCALANCE M812-1 ADSL-Router family (All versions < V8.1), SCALANCE M816-1 ADSL-Router family (All versions < V8.1), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.1), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.1), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.1), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.1), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.1), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.1), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.1), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.1), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.1), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.1), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.1), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.1), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.1), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.1), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.1), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.1), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.1), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.1), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.1).
network
low complexity
siemens CWE-532
6.5
2024-08-05 CVE-2024-40096 Information Exposure Through Log Files vulnerability in RD Labs LLC WHO 15.0
The com.cascadialabs.who (aka Who - Caller ID, Spam Block) application 15.0 for Android places sensitive information in the system log.
local
low complexity
rd-labs-llc CWE-532
3.3