Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2021-06-09 CVE-2020-15380 Information Exposure Through Log Files vulnerability in Broadcom Sannav 2.1.0
Brocade SANnav before version 2.1.1 logs account credentials at the ‘trace’ logging level.
network
low complexity
broadcom CWE-532
7.5
2021-06-08 CVE-2021-22219 Information Exposure Through Log Files vulnerability in Gitlab
All versions of GitLab CE/EE starting from 9.5 before 13.10.5, all versions starting from 13.11 before 13.11.5, and all versions starting from 13.12 before 13.12.2 allow a high privilege user to obtain sensitive information from log files because the sensitive information was not correctly registered for log masking.
network
low complexity
gitlab CWE-532
4.9
2021-06-08 CVE-2021-21558 Information Exposure Through Log Files vulnerability in Dell EMC Networker
Dell EMC NetWorker, 18.x, 19.1.x, 19.2.x 19.3.x, 19.4 and 19.4.0.1, contains an Information Disclosure vulnerability.
local
low complexity
dell CWE-532
4.4
2021-06-04 CVE-2021-22516 Information Exposure Through Log Files vulnerability in Microfocus Secure API Manager 2.0.0
Insertion of Sensitive Information into Log File vulnerability in Micro Focus Secure API Manager (SAPIM) product, affecting version 2.0.0.
network
low complexity
microfocus CWE-532
7.5
2021-05-19 CVE-2017-17675 Information Exposure Through Log Files vulnerability in BMC Remedy Mid-Tier 9.1
BMC Remedy Mid Tier 9.1SP3 is affected by log hijacking.
network
low complexity
bmc CWE-532
5.3
2021-05-13 CVE-2021-3528 Information Exposure Through Log Files vulnerability in Redhat Noobaa-Operator
A flaw was found in noobaa-operator in versions before 5.7.0, where internal RPC AuthTokens between the noobaa operator and the noobaa core are leaked into log files.
network
low complexity
redhat CWE-532
8.8
2021-05-07 CVE-2021-32074 Information Exposure Through Log Files vulnerability in Hashicorp Vault-Action
HashiCorp vault-action (aka Vault GitHub Action) before 2.2.0 allows attackers to obtain sensitive information from log files because a multi-line secret was not correctly registered with GitHub Actions for log masking.
network
low complexity
hashicorp CWE-532
7.5
2021-04-26 CVE-2021-20536 Information Exposure Through Log Files vulnerability in IBM Spectrum Protect Plus 10.1.6/10.1.7
IBM Spectrum Protect Plus File Systems Agent 10.1.6 and 10.1.7 stores potentially sensitive information in log files that could be read by a local user.
local
low complexity
ibm CWE-532
6.2
2021-04-23 CVE-2021-26908 Information Exposure Through Log Files vulnerability in Automox
Automox Agent prior to version 31 logs potentially sensitive information in local log files, which could be used by a locally-authenticated attacker to subvert an organization's security program.
local
low complexity
automox CWE-532
3.3
2021-04-22 CVE-2021-31546 Information Exposure Through Log Files vulnerability in Mediawiki
An issue was discovered in the AbuseFilter extension for MediaWiki through 1.35.2.
network
low complexity
mediawiki CWE-532
4.3