Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2021-08-06 CVE-2021-26999 Information Exposure Through Log Files vulnerability in Netapp Cloud Manager
NetApp Cloud Manager versions prior to 3.9.9 log sensitive information when an Active Directory connection fails.
network
low complexity
netapp CWE-532
4.3
2021-07-31 CVE-2021-37759 Information Exposure Through Log Files vulnerability in Graylog
A Session ID leak in the DEBUG log file in Graylog before 4.1.2 allows attackers to escalate privileges (to the access level of the leaked session ID).
network
low complexity
graylog CWE-532
critical
9.8
2021-07-31 CVE-2021-37760 Information Exposure Through Log Files vulnerability in Graylog
A Session ID leak in the audit log in Graylog before 4.1.2 allows attackers to escalate privileges (to the access level of the leaked session ID).
network
low complexity
graylog CWE-532
critical
9.8
2021-07-29 CVE-2021-21546 Information Exposure Through Log Files vulnerability in Dell EMC Networker
Dell EMC NetWorker versions 18.x,19.x prior to 19.3.0.4 and 19.4.0.0 contain an Information Disclosure in Log Files vulnerability.
local
low complexity
dell CWE-532
5.5
2021-07-22 CVE-2021-28131 Information Exposure Through Log Files vulnerability in Apache Impala
Impala sessions use a 16 byte secret to verify that the session is not being hijacked by another user.
network
high complexity
apache CWE-532
7.5
2021-07-21 CVE-2020-21933 Information Exposure Through Log Files vulnerability in Motorola CX2 Firmware 1.0.2
An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where the admin password and private key could be found in the log tar package.
network
low complexity
motorola CWE-532
7.5
2021-07-20 CVE-2020-23284 Information Exposure Through Log Files vulnerability in MV Idce 1.0
Information disclosure in aspx pages in MV's IDCE application v1.0 allows an attacker to copy and paste aspx pages in the end of the URL application that connect into the database which reveals internal and sensitive information without logging into the web application.
network
low complexity
mv CWE-532
7.5
2021-07-15 CVE-2021-34689 Information Exposure Through Log Files vulnerability in Idrive Remotepc
iDrive RemotePC before 7.6.48 on Windows allows information disclosure.
local
low complexity
idrive CWE-532
5.5
2021-07-07 CVE-2021-29759 Information Exposure Through Log Files vulnerability in IBM APP Connect Enterprise Certified Container
IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, and 1.3 could allow a privileged user to obtain sensitive information from internal log files.
local
low complexity
ibm CWE-532
2.3
2021-07-07 CVE-2020-24038 Information Exposure Through Log Files vulnerability in Eram products
myFax version 229 logs sensitive information in the export log module which allows any user to access critical information.
network
low complexity
eram CWE-532
6.5