CVE Vulnerabilities

CVE-2024-6060

Insertion of Sensitive Information into Log File

Published: Jun 25, 2024 | Modified: Dec 30, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An information disclosure vulnerability in Phloc Webscopes 7.0.0 allows local attackers with access to the log files to view logged HTTP requests that contain user passwords or other sensitive information.

Weakness

The product writes sensitive information to a log file.

Potential Mitigations

References