CVE Vulnerabilities

CVE-2020-24038

Insertion of Sensitive Information into Log File

Published: Jul 07, 2021 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

myFax version 229 logs sensitive information in the export log module which allows any user to access critical information.

Weakness

The product writes sensitive information to a log file.

Affected Software

NameVendorStart VersionEnd Version
Myfax150_firmwareEram229 (including)229 (including)

Potential Mitigations

References