CVE Vulnerabilities

CVE-2024-8264

Insertion of Sensitive Information into Log File

Published: Oct 09, 2024 | Modified: Oct 17, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Fortras Robot Schedule Enterprise Agent prior to version 3.05 writes FTP username and password information to the agent log file when detailed logging is enabled.

Weakness

The product writes sensitive information to a log file.

Affected Software

NameVendorStart VersionEnd Version
Robot_scheduleFortra1.24 (including)3.05 (excluding)

Potential Mitigations

References