Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2021-07-20 CVE-2020-23284 Information Exposure Through Log Files vulnerability in MV Idce 1.0
Information disclosure in aspx pages in MV's IDCE application v1.0 allows an attacker to copy and paste aspx pages in the end of the URL application that connect into the database which reveals internal and sensitive information without logging into the web application.
network
low complexity
mv CWE-532
7.5
2021-07-15 CVE-2021-34689 Information Exposure Through Log Files vulnerability in Idrive Remotepc
iDrive RemotePC before 7.6.48 on Windows allows information disclosure.
local
low complexity
idrive CWE-532
5.5
2021-07-07 CVE-2021-29759 Information Exposure Through Log Files vulnerability in IBM APP Connect Enterprise Certified Container
IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, and 1.3 could allow a privileged user to obtain sensitive information from internal log files.
local
low complexity
ibm CWE-532
2.3
2021-07-07 CVE-2020-24038 Information Exposure Through Log Files vulnerability in Eram products
myFax version 229 logs sensitive information in the export log module which allows any user to access critical information.
network
low complexity
eram CWE-532
6.5
2021-06-28 CVE-2021-35299 Information Exposure Through Log Files vulnerability in Zammad
Incorrect Access Control in Zammad 1.0.x up to 4.0.0 allows attackers to obtain sensitive information via email connection configuration probing.
network
low complexity
zammad CWE-532
7.5
2021-06-22 CVE-2021-0549 Information Exposure Through Log Files vulnerability in Google Android 11.0
In sspRequestCallback of BondStateMachine.java, there is a possible leak of Bluetooth MAC addresses due to log information disclosure.
local
low complexity
google CWE-532
4.4
2021-06-11 CVE-2021-25420 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch Plugin
Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.
local
low complexity
samsung CWE-532
5.5
2021-06-11 CVE-2021-25421 Information Exposure Through Log Files vulnerability in Samsung Galaxy Watch 3 Plugin 2.2.03.22012751
Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.
local
low complexity
samsung CWE-532
5.5
2021-06-11 CVE-2021-25422 Information Exposure Through Log Files vulnerability in Samsung Watch Active Plugin
Improper log management vulnerability in Watch Active PlugIn prior to version 2.2.07.21033151 allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone within log.
local
low complexity
samsung CWE-532
5.5
2021-06-11 CVE-2021-25423 Information Exposure Through Log Files vulnerability in Samsung Watch Active2 Plugin
Improper log management vulnerability in Watch Active2 PlugIn prior to 2.2.08.21033151 version allows attacker with log permissions to leak Wi-Fi password connected to the user smartphone via log.
local
low complexity
samsung CWE-532
5.5