CVE Vulnerabilities

CVE-2024-6060

Insertion of Sensitive Information into Log File

Published: Jun 25, 2024 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An information disclosure vulnerability in Phloc Webscopes 7.0.0 allows local attackers with access to the log files to view logged HTTP requests that contain user passwords or other sensitive information.

Weakness

The product writes sensitive information to a log file.

Potential Mitigations

References