Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2021-11-23 CVE-2021-37036 Information Exposure Through Log Files vulnerability in Huawei Ecns280 TD Firmware and Fusioncompute
There is an information leakage vulnerability in FusionCompute 6.5.1, eCNS280_TD V100R005C00 and V100R005C10.
local
low complexity
huawei CWE-532
5.5
2021-11-20 CVE-2021-36340 Information Exposure Through Log Files vulnerability in Dell EMC Secure Connect Gateway 3.52.10.08/5.00.00.10
Dell EMC SCG 5.00.00.10 and earlier, contain a sensitive information disclosure vulnerability.
local
low complexity
dell CWE-532
5.5
2021-11-19 CVE-2021-22030 Information Exposure Through Log Files vulnerability in Greenplum
In versions of Greenplum database prior to 5.28.14 and 6.17.0, certain statements execution led to the storage of sensitive(credential) information in the logs of the database.
network
low complexity
greenplum CWE-532
6.5
2021-11-18 CVE-2021-27026 Information Exposure Through Log Files vulnerability in Puppet Puppet, Puppet Connect and Puppet Enterprise
A flaw was divered in Puppet Enterprise and other Puppet products where sensitive plan parameters may be logged
local
low complexity
puppet CWE-532
4.4
2021-11-17 CVE-2021-0148 Information Exposure Through Log Files vulnerability in Intel products
Insertion of information into log file in firmware for some Intel(R) SSD DC may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-532
4.4
2021-11-12 CVE-2021-3791 Information Exposure Through Log Files vulnerability in Binatoneglobal products
An information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an unauthenticated attacker on the same subnet to download an encrypted log file containing sensitive information such as WiFi SSID and password.
low complexity
binatoneglobal CWE-532
6.5
2021-11-09 CVE-2020-10052 Information Exposure Through Log Files vulnerability in Siemens Simatic Rtls Locating Manager 2.10/2.10.2/2.9.3
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12).
local
low complexity
siemens CWE-532
5.5
2021-11-09 CVE-2021-40364 Information Exposure Through Log Files vulnerability in Siemens Simatic PCS 7 and Simatic Wincc
A vulnerability has been identified in SIMATIC PCS 7 V8.2 (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3 UC04), SIMATIC PCS 7 V9.1 (All versions < V9.1 SP1), SIMATIC WinCC V15 and earlier (All versions < V15 SP1 Update 7), SIMATIC WinCC V16 (All versions < V16 Update 5), SIMATIC WinCC V17 (All versions < V17 Update 2), SIMATIC WinCC V7.4 (All versions < V7.4 SP1 Update 19), SIMATIC WinCC V7.5 (All versions < V7.5 SP2 Update 5).
local
low complexity
siemens CWE-532
5.5
2021-11-05 CVE-2021-39913 Information Exposure Through Log Files vulnerability in Gitlab
Accidental logging of system root password in the migration log in all versions of GitLab CE/EE before 14.2.6, all versions starting from 14.3 before 14.3.4, and all versions starting from 14.4 before 14.4.1 allows an attacker with local file system access to obtain system root-level privileges
local
low complexity
gitlab CWE-532
6.7
2021-10-13 CVE-2021-20129 Information Exposure Through Log Files vulnerability in Draytek Vigorconnect 1.6.0
An information disclosure vulnerability exists in Draytek VigorConnect 1.6.0-B3, allowing an unauthenticated attacker to export system logs.
network
low complexity
draytek CWE-532
7.5