Vulnerabilities > Information Exposure Through Log Files

DATE CVE VULNERABILITY TITLE RISK
2019-07-01 CVE-2019-4296 Information Exposure Through Log Files vulnerability in IBM Robotic Process Automation With Automation Anywhere 11.0.0.0/11.0.0.1/11.0.0.2
IBM Robotic Process Automation with Automation Anywhere 11 information disclosure could allow a local user to obtain e-mail contents from the client debug log file.
local
low complexity
ibm CWE-532
3.3
2019-06-27 CVE-2019-1622 Information Exposure Through Log Files vulnerability in Cisco Data Center Network Manager 11.0(1)
A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to retrieve sensitive information from an affected device.
network
low complexity
cisco CWE-532
5.3
2019-06-26 CVE-2019-4225 Information Exposure Through Log Files vulnerability in IBM Pureapplication System
IBM PureApplication System 2.2.3.0 through 2.2.5.3 stores potentially sensitive information in log files that could be read by a local user.
local
low complexity
ibm CWE-532
4.4
2019-06-12 CVE-2019-3888 Information Exposure Through Log Files vulnerability in multiple products
A vulnerability was found in Undertow web server before 2.0.21.
network
low complexity
redhat netapp CWE-532
critical
9.8
2019-06-06 CVE-2019-9929 Information Exposure Through Log Files vulnerability in Northern Cfengine 3.12.1
Northern.tech CFEngine Enterprise 3.12.1 has Insecure Permissions.
network
low complexity
northern CWE-532
8.8
2019-05-14 CVE-2019-11336 Information Exposure Through Log Files vulnerability in Sony Photo Sharing Plus 6.5830
Sony Bravia Smart TV devices allow remote attackers to retrieve the static Wi-Fi password (used when the TV is acting as an access point) by using the Photo Sharing Plus application to execute a backdoor API command, a different vulnerability than CVE-2019-10886.
network
high complexity
sony CWE-532
8.1
2019-05-03 CVE-2019-6158 Information Exposure Through Log Files vulnerability in Lenovo Xclarity Administrator
An internal product security audit of Lenovo XClarity Administrator (LXCA) discovered HTTP proxy credentials being written to a log file in clear text.
network
high complexity
lenovo CWE-532
5.9
2019-04-26 CVE-2019-11492 Information Exposure Through Log Files vulnerability in Projectsend
ProjectSend before r1070 writes user passwords to the server logs.
network
low complexity
projectsend CWE-532
7.5
2019-04-24 CVE-2019-9734 Information Exposure Through Log Files vulnerability in Aquaverde Aquarius CMS
Aquarius CMS through 4.3.5 writes POST and GET parameters (including passwords) to a log file due to an overwriting of configuration parameters under certain circumstances.
network
low complexity
aquaverde CWE-532
7.5
2019-04-24 CVE-2019-9724 Information Exposure Through Log Files vulnerability in Aquaverde Aquarius CMS
aquaverde Aquarius CMS through 4.3.5 allows Information Exposure through Log Files because of an error in the Log-File writer component.
network
low complexity
aquaverde CWE-532
7.5