Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2021-05-19 CVE-2017-17675 Information Exposure Through Log Files vulnerability in BMC Remedy Mid-Tier 9.1
BMC Remedy Mid Tier 9.1SP3 is affected by log hijacking.
network
low complexity
bmc CWE-532
5.3
2021-05-13 CVE-2021-3528 Information Exposure Through Log Files vulnerability in Redhat Noobaa-Operator
A flaw was found in noobaa-operator in versions before 5.7.0, where internal RPC AuthTokens between the noobaa operator and the noobaa core are leaked into log files.
network
low complexity
redhat CWE-532
8.8
2021-05-07 CVE-2021-32074 Information Exposure Through Log Files vulnerability in Hashicorp Vault-Action
HashiCorp vault-action (aka Vault GitHub Action) before 2.2.0 allows attackers to obtain sensitive information from log files because a multi-line secret was not correctly registered with GitHub Actions for log masking.
network
low complexity
hashicorp CWE-532
7.5
2021-04-26 CVE-2021-20536 Information Exposure Through Log Files vulnerability in IBM Spectrum Protect Plus 10.1.6/10.1.7
IBM Spectrum Protect Plus File Systems Agent 10.1.6 and 10.1.7 stores potentially sensitive information in log files that could be read by a local user.
local
low complexity
ibm CWE-532
6.2
2021-04-23 CVE-2021-26908 Information Exposure Through Log Files vulnerability in Automox
Automox Agent prior to version 31 logs potentially sensitive information in local log files, which could be used by a locally-authenticated attacker to subvert an organization's security program.
local
low complexity
automox CWE-532
3.3
2021-04-22 CVE-2021-31546 Information Exposure Through Log Files vulnerability in Mediawiki
An issue was discovered in the AbuseFilter extension for MediaWiki through 1.35.2.
network
low complexity
mediawiki CWE-532
4.3
2021-04-20 CVE-2021-3037 Information Exposure Through Log Files vulnerability in Paloaltonetworks Pan-Os
An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where the connection details for a scheduled configuration export are logged in system logs.
local
low complexity
paloaltonetworks CWE-532
2.3
2021-04-20 CVE-2021-3036 Information Exposure Through Log Files vulnerability in Paloaltonetworks Pan-Os
An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where secrets in PAN-OS XML API requests are logged in cleartext to the web server logs when the API is used incorrectly.
local
low complexity
paloaltonetworks CWE-532
4.4
2021-04-12 CVE-2021-24024 Information Exposure Through Log Files vulnerability in Fortinet Fortiadc
A clear text storage of sensitive information into log file vulnerability in FortiADCManager 5.3.0 and below, 5.2.1 and below and FortiADC 5.3.7 and below may allow a remote authenticated attacker to read other local users' password in log files.
network
low complexity
fortinet CWE-532
6.5
2021-04-01 CVE-2021-23924 Information Exposure Through Log Files vulnerability in Devolutions Server
An issue was discovered in Devolutions Server before 2020.3.
network
low complexity
devolutions CWE-532
7.5