Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2020-03-13 CVE-2019-19756 Information Exposure Through Log Files vulnerability in Lenovo Xclarity Administrator 2.6.0
An internal product security audit of Lenovo XClarity Administrator (LXCA) discovered Windows OS credentials, used to perform driver updates of managed systems, being written to a log file in clear text.
local
low complexity
lenovo CWE-532
6.0
2020-03-13 CVE-2019-16157 Information Exposure Through Log Files vulnerability in Fortinet Fortiweb
An information exposure vulnerability in Fortinet FortiWeb 6.2.0 CLI and earlier may allow an authenticated user to view sensitive information being logged via diagnose debug commands.
network
low complexity
fortinet CWE-532
6.5
2020-03-05 CVE-2020-4083 Information Exposure Through Log Files vulnerability in Hcltech Connections 6.5
HCL Connections 6.5 is vulnerable to possible information leakage.
local
low complexity
hcltech CWE-532
5.5
2020-02-27 CVE-2020-5400 Information Exposure Through Log Files vulnerability in Cloudfoundry Cf-Deployment
Cloud Foundry Cloud Controller (CAPI), versions prior to 1.91.0, logs properties of background jobs when they are run, which may include sensitive information such as credentials if provided to the job.
network
low complexity
cloudfoundry CWE-532
6.5
2020-02-13 CVE-2020-0018 Information Exposure Through Log Files vulnerability in Google Android
In MotionEntry::appendDescription of InputDispatcher.cpp, there is a possible log information disclosure.
local
low complexity
google CWE-532
4.4
2020-02-11 CVE-2020-1942 Information Exposure Through Log Files vulnerability in Apache Nifi
In Apache NiFi 0.0.1 to 1.11.0, the flow fingerprint factory generated flow fingerprints which included sensitive property descriptor values.
network
low complexity
apache CWE-532
7.5
2020-02-05 CVE-2019-16204 Information Exposure Through Log Files vulnerability in Broadcom Fabric Operating System
Brocade Fabric OS Versions before v7.4.2f, v8.2.2a, v8.1.2j and v8.2.1d could expose external passwords, common secrets or authentication keys used between the switch and an external server.
network
low complexity
broadcom CWE-532
7.5
2020-02-05 CVE-2019-16203 Information Exposure Through Log Files vulnerability in Broadcom Fabric Operating System
Brocade Fabric OS Versions before v8.2.2a and v8.2.1d could expose the credentials of the remote ESRS server when these credentials are given as a command line option when configuring the ESRS client.
network
low complexity
broadcom CWE-532
7.5
2020-02-03 CVE-2019-18193 Information Exposure Through Log Files vulnerability in Unisys Stealth
In Unisys Stealth (core) 3.4.108.0, 3.4.209.x, 4.0.027.x and 4.0.114, key material inadvertently logged under certain conditions.
local
high complexity
unisys CWE-532
7.5
2020-01-28 CVE-2020-1928 Information Exposure Through Log Files vulnerability in Apache Nifi 1.10.0
An information disclosure vulnerability was found in Apache NiFi 1.10.0.
network
low complexity
apache CWE-532
5.3