CWE-532— Insertion of Sensitive Information into Log File
1,076 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-532page 4 of 22
- CVE-2019-17396CRITICALCVSS 9.8EG 9.82019-10-15
In the PowerSchool Mobile application 1.1.8 for Android, the username and password are stored in the log during authentication, and may be available to attackers via logcat.
- CVE-2019-17397CRITICALCVSS 9.8EG 9.82019-10-15
In the DoorDash application through 11.5.2 for Android, the username and password are stored in the log during authentication, and may be available to attackers via logcat.
- CVE-2019-17398CRITICALCVSS 9.8EG 9.82019-10-15
In the Dark Horse Comics application 1.3.21 for Android, token information (equivalent to the username and password) is stored in the log during authentication, and may be available to attackers via logcat.
- CVE-2019-18193HIGHCVSS 7.5EG 7.52020-02-03
In Unisys Stealth (core) 3.4.108.0, 3.4.209.x, 4.0.027.x and 4.0.114, key material inadvertently logged under certain conditions. Fixed included in 3.4.109, 4.0.027.13, 4.0.125 and 5.0.013.0.
- CVE-2019-18244MEDIUMCVSS 4.7EG 4.72020-01-15
In OSIsoft PI System multiple products and versions, a local attacker could view sensitive information in log files when service accounts are customized during installation or upgrade of PI Vision. The update fixes a previously reported is…
- CVE-2019-18385HIGHCVSS 7.5EG 7.52019-10-23
An issue was discovered on TerraMaster FS-210 4.0.19 devices. An unauthenticated attacker can download log files via the include/makecvs.php?Event= substring.
- CVE-2019-18576MEDIUMCVSS 6.7EG 6.72020-03-13
Dell EMC XtremIO XMS versions prior to 6.3.0 contain an information disclosure vulnerability where OS users’ passwords are logged in local files. Malicious local users with access to the log files may use the exposed passwords to gain ac…
- CVE-2019-19039MEDIUMCVSS 5.5EG 5.52019-11-21
__btrfs_free_extent in fs/btrfs/extent-tree.c in the Linux kernel through 5.3.12 calls btrfs_print_leaf in a certain ENOENT case, which allows local users to obtain potentially sensitive information about register values via the dmesg prog…
- CVE-2019-19150MEDIUMCVSS 4.9EG 4.92019-12-23
On versions 15.0.0-15.0.1.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, the BIG-IP APM system logs the client-session-id when a per-session policy is attached to the virtual server with debug logging…
- CVE-2019-1953MEDIUMCVSS 6.5EG 6.52019-08-08
A vulnerability in the web portal of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to view a password in clear text. The vulnerability is due to incorrectly logging the admin password wh…
- CVE-2019-1961MEDIUMCVSS 4.9EG 4.92019-08-08
A vulnerability in Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to read arbitrary files on the underlying operating system (OS) of an affected device. The vulnerability is due to the im…
- CVE-2019-19756HIGHCVSS 7.9EG 7.92020-03-13
An internal product security audit of Lenovo XClarity Administrator (LXCA) discovered Windows OS credentials, used to perform driver updates of managed systems, being written to a log file in clear text. This only affects LXCA version 2.6.…
- CVE-2019-20625LOWCVSS 3.3EG 3.32020-03-24
An issue was discovered on Samsung mobile devices with N(7.1) and O(8.x) (Exynos chipsets) software. The ion debugfs driver allows information disclosure. The Samsung ID is SVE-2018-13427 (February 2019).
- CVE-2019-20852HIGHCVSS 7.5EG 7.52020-06-19
An issue was discovered in Mattermost Mobile Apps before 1.26.0. Local logging is not blocked for sensitive information (e.g., server addresses or message content).
- CVE-2019-25683MEDIUMCVSS 6.2EG 6.22026-04-05
FileZilla 3.40.0 contains a denial of service vulnerability in the local search functionality that allows local attackers to crash the application by supplying a malformed path string. Attackers can trigger the crash by entering a crafted …
- CVE-2019-3429MEDIUMCVSS 5.3EG 5.32019-12-23
All versions up to V4.01.01.02 of ZTE ZXCLOUD GoldenData VAP product have a file reading vulnerability. Attackers could obtain log file information without authorization, causing the disclosure of sensitive information.
- CVE-2019-3500HIGHCVSS 7.8EG 7.82019-01-02
aria2c in aria2 1.33.1, when --log is used, can store an HTTP Basic Authentication username and password in a file, which might allow local users to obtain sensitive information by reading this file.
- CVE-2019-3649MEDIUMCVSS 5.3EG 5.32019-11-13
Information Disclosure vulnerability in McAfee Advanced Threat Defense (ATD) prior to 4.8 allows remote authenticated attackers to gain access to hashed credentials via carefully constructed POST request extracting incorrectly recorded dat…
- CVE-2019-3715HIGHCVSS 7.8EG 5.52019-03-13
RSA Archer versions, prior to 6.5 SP1, contain an information exposure vulnerability. Users' session information is logged in plain text in the RSA Archer log files. An authenticated malicious local user with access to the log files may ob…
- CVE-2019-3716HIGHCVSS 7.8EG 7.82019-03-13
RSA Archer versions, prior to 6.5 SP2, contain an information exposure vulnerability. The database connection password may get logged in plain text in the RSA Archer log files. An authenticated malicious local user with access to the log f…
- CVE-2019-3763HIGHCVSS 8.8EG 8.82019-09-11
The RSA Identity Governance and Lifecycle software and RSA Via Lifecycle and Governance products prior to 7.1.0 P08 contain an information exposure vulnerability. The Office 365 user password may get logged in a plain text format in the Of…
- CVE-2019-3830HIGHCVSS 7.8EG 7.82019-03-26
A vulnerability was found in ceilometer before version 12.0.0.0rc1. An Information Exposure in ceilometer-agent prints sensitive configuration data to log files without DEBUG logging being activated.
- CVE-2019-3888CRITICALCVSS 9.8EG 9.82019-06-12
A vulnerability was found in Undertow web server before 2.0.21. An information exposure of plain text credentials through log files because Connectors.executeRootHandler:402 logs the HttpServerExchange object at ERROR level using UndertowL…
- CVE-2019-3891HIGHCVSS 7.8EG 7.82019-04-15
It was discovered that a world-readable log file belonging to Candlepin component of Red Hat Satellite 6.4 leaked the credentials of the Candlepin database. A malicious user with local access to a Satellite host can use those credentials t…
- CVE-2019-4008CRITICALCVSS 9.8EG 9.82019-02-07
API Connect V2018.1 through 2018.4.1.1 is impacted by access token leak. Authorization tokens in some URLs can result in the tokens being written to log files. IBM X-Force ID: 155626.
- CVE-2019-4143MEDIUMCVSS 5.5EG 5.52019-04-08
The IBM Cloud Private Key Management Service (IBM Cloud Private 3.1.1 and 3.1.2) could allow a local user to obtain sensitive from the KMS plugin container log. IBM X-Force ID: 158348.
- CVE-2019-4225MEDIUMCVSS 4.4EG 4.42019-06-26
IBM PureApplication System 2.2.3.0 through 2.2.5.3 stores potentially sensitive information in log files that could be read by a local user. IBM X-Force ID: 159242.
- CVE-2019-4284MEDIUMCVSS 4.4EG 4.42019-08-05
IBM Cloud Private 2.1.0 , 3.1.0, 3.1.1, and 3.1.2 could allow a local privileged user to obtain sensitive OIDC token that is printed to log files, which could be used to log in to the system as another user. IBM X-Force ID: 160512.
- CVE-2019-4286MEDIUMCVSS 4.3EG 4.32020-04-29
IBM Maximo Anywhere 7.6.2.0, 7.6.2.1, 7.6.3.0, and 7.6.3.1 could disclose highly senstiive user information to an authenticated user with physical access to the device. IBM X-Force ID: 160514.
- CVE-2019-4296LOWCVSS 3.3EG 3.32019-07-01
IBM Robotic Process Automation with Automation Anywhere 11 information disclosure could allow a local user to obtain e-mail contents from the client debug log file. IBM X-Force ID: 160759.
- CVE-2019-4299MEDIUMCVSS 5.5EG 5.52019-07-01
IBM Robotic Process Automation with Automation Anywhere 11 could allow a local user to obtain highly sensitive information from log files when debugging is enabled. IBM X-Force ID: 160765.
- CVE-2019-4572MEDIUMCVSS 4.4EG 4.42019-10-14
IBM FileNet Content Manager 5.5.2 and 5.5.3 in specific configurations, could log the web service user credentials into a log file that could be accessed by an administrator on the local machine. IBM X-Force ID: 166798.
- CVE-2019-4706LOWCVSS 2.7EG 2.72020-07-01
IBM Security Identity Manager Virtual Appliance 7.0.2 writes information to log files which can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information. IBM X-Force ID: 172016.
- CVE-2019-5532HIGHCVSS 7.7EG 7.72019-09-18
VMware vCenter Server (6.7.x prior to 6.7 U3, 6.5 prior to 6.5 U3 and 6.0 prior to 6.0 U3j) contains an information disclosure vulnerability due to the logging of credentials in plain-text for virtual machines deployed through OVF. A malic…
- CVE-2019-5634MEDIUMCVSS 6.5EG 4.32019-08-22
An inclusion of sensitive information in log files vulnerability is present in Hickory Smart for Android mobile devices from Belwith Products, LLC. Communications to the internet API services and direct connections to the lock via Bluetoot…
- CVE-2019-6157MEDIUMCVSS 6.5EG 7.52019-04-22
In various firmware versions of Lenovo System x, the integrated management module II (IMM2)'s first failure data capture (FFDC) includes the web server's private key in the generated log file for support.
- CVE-2019-6158HIGHCVSS 8.7EG 5.92019-05-03
An internal product security audit of Lenovo XClarity Administrator (LXCA) discovered HTTP proxy credentials being written to a log file in clear text. This only affects LXCA when HTTP proxy credentials have been configured. This affects L…
- CVE-2019-6648MEDIUMCVSS 4.4EG 4.42019-09-04
On version 1.9.0, If DEBUG logging is enable, F5 Container Ingress Service (CIS) for Kubernetes and Red Hat OpenShift (k8s-bigip-ctlr) log files may contain BIG-IP secrets such as SSL Private Keys and Private key Passphrases as provided as…
- CVE-2019-6656HIGHCVSS 7.5EG 7.52019-09-25
BIG-IP APM Edge Client before version 7.1.8 (7180.2019.508.705) logs the full apm session ID in the log files. Vulnerable versions of the client are bundled with BIG-IP APM versions 15.0.0-15.0.1, 14,1.0-14.1.0.6, 14.0.0-14.0.0.4, 13.0.0-1…
- CVE-2019-6662MEDIUMCVSS 6.5EG 6.52019-11-15
On BIG-IP 13.1.0-13.1.1.4, sensitive information is logged into the local log files and/or remote logging targets when restjavad processes an invalid request. Users with access to the log files would be able to view that data.
- CVE-2019-7612CRITICALCVSS 9.8EG 9.82019-03-25
A sensitive data disclosure flaw was found in the way Logstash versions before 5.6.15 and 6.6.1 logs malformed URLs. If a malformed URL is specified as part of the Logstash configuration, the credentials for the URL could be inadvertently …
- CVE-2019-8944MEDIUMCVSS 6.5EG 6.52019-02-20
An Information Exposure issue in the Terraform deployment step in Octopus Deploy before 2019.1.8 (and before 2018.10.4 LTS) allows remote authenticated users to view sensitive Terraform output variables via log files.
- CVE-2019-9277LOWCVSS 3.3EG 3.32019-09-27
In the proc filesystem, there is a possible information disclosure due to log information disclosure. This could lead to local disclosure of app and browser activity with User execution privileges needed. User interaction is not needed for…
- CVE-2019-9724HIGHCVSS 7.5EG 7.52019-04-24
aquaverde Aquarius CMS through 4.3.5 allows Information Exposure through Log Files because of an error in the Log-File writer component.
- CVE-2019-9734HIGHCVSS 7.5EG 7.52019-04-24
Aquarius CMS through 4.3.5 writes POST and GET parameters (including passwords) to a log file due to an overwriting of configuration parameters under certain circumstances.
- CVE-2019-9929HIGHCVSS 8.8EG 8.82019-06-06
Northern.tech CFEngine Enterprise 3.12.1 has Insecure Permissions.
- CVE-2019-9976HIGHCVSS 8.8EG 8.82019-04-11
The Boa server configuration on DASAN H660RM devices with firmware 1.03-0022 logs POST data to the /tmp/boa-temp file, which allows logged-in users to read the credentials of administration web interface users.
- CVE-2020-0018MEDIUMCVSS 4.4EG 4.42020-02-13
In MotionEntry::appendDescription of InputDispatcher.cpp, there is a possible log information disclosure. This could lead to local disclosure of user input with System execution privileges needed. User interaction is not needed for exploit…
- CVE-2020-0476MEDIUMCVSS 4.4EG 4.42020-12-15
In onNotificationRemoved of Assistant.java, there is a possible leak of sensitive information to logs. This could lead to local information disclosure with System execution privileges required. User interaction is not needed for exploitati…
- CVE-2020-10052MEDIUMCVSS 5.5EG 5.52021-11-09
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The affected application writes sensitive data, such as usernames and passwords in log files. A local attacker with access to the log files could …
Map vulnerabilities like CWE-532 to your infrastructure
EchelonGraph correlates every CVE — across CWE-532 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →