Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
The product writes sensitive information to a log file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Enterprise_sonic_distribution | Dell | * | 4.2.3 (excluding) |
Enterprise_sonic_distribution | Dell | 4.4.0 (including) | 4.4.0 (including) |