Vulnerabilities > Tecnoteca

DATE CVE VULNERABILITY TITLE RISK
2022-03-22 CVE-2022-25518 Information Exposure Through Log Files vulnerability in Tecnoteca Cmdbuild
In CMDBuild from version 3.0 to 3.3.2 payload requests are saved in a temporary log table, which allows attackers with database access to read the password of the users who login to the application by querying the database table.
network
low complexity
tecnoteca CWE-532
6.5