Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2019-08-29 CVE-2019-11250 Information Exposure Through Log Files vulnerability in multiple products
The Kubernetes client-go library logs request headers at verbosity levels of 7 or higher.
network
low complexity
kubernetes redhat CWE-532
6.5
2019-08-28 CVE-2019-15294 Information Exposure Through Log Files vulnerability in Gallagher Command Centre 8.10
An issue was discovered in Gallagher Command Centre 8.10 before 8.10.1092(MR2).
network
low complexity
gallagher CWE-532
critical
9.8
2019-08-22 CVE-2019-5634 Information Exposure Through Log Files vulnerability in Belwith-Keeler Hickory Smart 01.01.40/01.01.43
An inclusion of sensitive information in log files vulnerability is present in Hickory Smart for Android mobile devices from Belwith Products, LLC.
low complexity
belwith-keeler CWE-532
4.3
2019-08-15 CVE-2019-13515 Information Exposure Through Log Files vulnerability in Osisoft PI web API
OSIsoft PI Web API 2018 and prior may allow disclosure of sensitive information.
network
low complexity
osisoft CWE-532
6.5
2019-08-08 CVE-2018-20956 Information Exposure Through Log Files vulnerability in Swann Swwhd-Intcam-Hd Firmware
Swann SWWHD-INTCAM-HD devices leave the PSK in logs after a factory reset.
local
low complexity
swann CWE-532
5.5
2019-08-08 CVE-2019-1953 Information Exposure Through Log Files vulnerability in Cisco Enterprise Network Function Virtualization Infrastructure
A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to view a password in clear text.
network
low complexity
cisco CWE-532
6.5
2019-08-07 CVE-2019-10370 Information Exposure Through Log Files vulnerability in Jenkins Mask Passwords
Jenkins Mask Passwords Plugin 2.12.0 and earlier transmits globally configured passwords in plain text as part of the configuration form, potentially resulting in their exposure.
network
low complexity
jenkins CWE-532
6.5
2019-08-07 CVE-2019-10367 Information Exposure Through Log Files vulnerability in Jenkins Configuration AS Code
Due to an incomplete fix of CVE-2019-10343, Jenkins Configuration as Code Plugin 1.26 and earlier did not properly apply masking to some values expected to be hidden when logging the configuration being applied.
local
low complexity
jenkins CWE-532
5.5
2019-08-05 CVE-2019-4284 Information Exposure Through Log Files vulnerability in IBM Cloud Private
IBM Cloud Private 2.1.0 , 3.1.0, 3.1.1, and 3.1.2 could allow a local privileged user to obtain sensitive OIDC token that is printed to log files, which could be used to log in to the system as another user.
local
low complexity
ibm CWE-532
4.4
2019-08-02 CVE-2017-18426 Information Exposure Through Log Files vulnerability in Cpanel
cPanel before 66.0.2 allows resellers to read other accounts' domain log files (SEC-288).
network
low complexity
cpanel CWE-532
2.7