Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2020-06-11 CVE-2020-12023 Information Exposure Through Log Files vulnerability in Philips Intellibridge Enterprise B.12
Philips IntelliBridge Enterprise (IBE), Versions B.12 and prior, IntelliBridge Enterprise system integration with SureSigns (VS4), EarlyVue (VS30) and IntelliVue Guardian (IGS).
low complexity
philips CWE-532
4.5
2020-06-10 CVE-2020-13223 Information Exposure Through Log Files vulnerability in Hashicorp Vault
HashiCorp Vault and Vault Enterprise logged proxy environment variables that potentially included sensitive credentials.
network
low complexity
hashicorp CWE-532
7.5
2020-06-06 CVE-2020-13881 Information Exposure Through Log Files vulnerability in multiple products
In support.c in pam_tacplus 1.3.8 through 1.5.1, the TACACS+ shared secret gets logged via syslog if the DEBUG loglevel and journald are used.
7.5
2020-06-04 CVE-2020-13830 Information Exposure Through Log Files vulnerability in Google Android 9.0
An issue was discovered on Samsung mobile devices with P(9.0) software.
network
low complexity
google CWE-532
7.5
2020-06-04 CVE-2020-11094 Information Exposure Through Log Files vulnerability in Octobercms Debugbar
The October CMS debugbar plugin before version 3.1.0 contains a feature where it will log all requests (and all information pertaining to each request including session data) whenever it is enabled.
network
low complexity
octobercms CWE-532
critical
9.8
2020-06-03 CVE-2020-3281 Information Exposure Through Log Files vulnerability in Cisco Digital Network Architecture Center
A vulnerability in the audit logging component of Cisco Digital Network Architecture (DNA) Center could allow an authenticated, remote attacker to view sensitive information in clear text.
network
low complexity
cisco CWE-532
8.8
2020-05-29 CVE-2020-7654 Information Exposure Through Log Files vulnerability in Synk Broker
All versions of snyk-broker before 4.73.1 are vulnerable to Information Exposure.
network
low complexity
synk CWE-532
7.5
2020-05-13 CVE-2020-2004 Information Exposure Through Log Files vulnerability in Paloaltonetworks Globalprotect
Under certain circumstances a user's password may be logged in cleartext in the PanGPS.log diagnostic file when logs are collected for troubleshooting on GlobalProtect app (also known as GlobalProtect Agent) for MacOS and Windows.
local
low complexity
paloaltonetworks CWE-532
5.5
2020-05-13 CVE-2020-11932 Information Exposure Through Log Files vulnerability in Canonical Subiquity
It was discovered that the Subiquity installer for Ubuntu Server logged the LUKS full disk encryption password if one was entered.
local
low complexity
canonical CWE-532
2.3
2020-05-11 CVE-2020-1698 Information Exposure Through Log Files vulnerability in Redhat Keycloak
A flaw was found in keycloak in versions before 9.0.0.
local
low complexity
redhat CWE-532
5.5