Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2020-07-01 CVE-2019-4706 Information Exposure Through Log Files vulnerability in IBM Security Identity Manager Virtual Appliance 7.0.2
IBM Security Identity Manager Virtual Appliance 7.0.2 writes information to log files which can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information.
network
low complexity
ibm CWE-532
2.7
2020-06-19 CVE-2020-10750 Information Exposure Through Log Files vulnerability in Linuxfoundation Jaeger
Sensitive information written to a log file vulnerability was found in jaegertracing/jaeger before version 1.18.1 when the Kafka data store is used.
local
low complexity
linuxfoundation CWE-532
5.5
2020-06-19 CVE-2020-14470 Information Exposure Through Log Files vulnerability in Octopus Deploy
In Octopus Deploy 2018.8.0 through 2019.x before 2019.12.2, an authenticated user with could trigger a deployment that leaks the Helm Chart repository password.
network
low complexity
octopus CWE-532
6.5
2020-06-19 CVE-2019-20852 Information Exposure Through Log Files vulnerability in Mattermost Mobile
An issue was discovered in Mattermost Mobile Apps before 1.26.0.
network
low complexity
mattermost CWE-532
7.5
2020-06-15 CVE-2020-4477 Information Exposure Through Log Files vulnerability in IBM Spectrum Protect Plus
IBM Spectrum Protect Plus 10.1.0 through 10.1.5 discloses highly sensitive information in plain text in the virgo log file which could be used in further attacks against the system.
network
low complexity
ibm CWE-532
6.5
2020-06-12 CVE-2020-3930 Information Exposure Through Log Files vulnerability in Geovision Gv-Gf192X Firmware 1.10
GeoVision Door Access Control device family improperly stores and controls access to system logs, any users can read these logs.
local
low complexity
geovision CWE-532
3.3
2020-06-11 CVE-2020-12023 Information Exposure Through Log Files vulnerability in Philips Intellibridge Enterprise B.12
Philips IntelliBridge Enterprise (IBE), Versions B.12 and prior, IntelliBridge Enterprise system integration with SureSigns (VS4), EarlyVue (VS30) and IntelliVue Guardian (IGS).
low complexity
philips CWE-532
4.5
2020-06-10 CVE-2020-13223 Information Exposure Through Log Files vulnerability in Hashicorp Vault
HashiCorp Vault and Vault Enterprise logged proxy environment variables that potentially included sensitive credentials.
network
low complexity
hashicorp CWE-532
7.5
2020-06-06 CVE-2020-13881 Information Exposure Through Log Files vulnerability in multiple products
In support.c in pam_tacplus 1.3.8 through 1.5.1, the TACACS+ shared secret gets logged via syslog if the DEBUG loglevel and journald are used.
7.5
2020-06-04 CVE-2020-13830 Information Exposure Through Log Files vulnerability in Google Android 9.0
An issue was discovered on Samsung mobile devices with P(9.0) software.
network
low complexity
google CWE-532
7.5