CWE-534 5 件の CVE MITRE の定義 ↗

CWE-534: Information Exposure Through Debug Log Files(廃止)

概要

CWE-534 は CWE フレームワークで廃止された分類です。歴史的な階層や CVE の追跡のためカタログに残されています。

セキュリティへの影響
セキュリティ影響:現行の悪用シナリオでは低い/ない(カタログ上は廃止エントリ)。
補足(歴史的背景)
補足:MITRE は CWE のツリーを随時再編します。脅威モデリングでは現行かつ非廃止の弱点を優先してください。

説明

This entry has been deprecated because its abstraction was too low-level. See CWE-532.

このデータベースの関連 CVE

これらの CVE は本データベースでこの弱点に対応付けられており、追跡と検索のために保持されています。

CVE 公開 概要
CVE-2023-5028 2023-09-17 A vulnerability, which was classified as problematic, has been found in China Unicom TEWA-800G 4.16L.04_CT2015_Yueme. Affected by this issue is some unknown functionality. The manipulation leads to in…
CVE-2021-3037 2021-04-20 An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where the connection details for a scheduled configuration export are logged in system logs. Logged …
CVE-2020-2004 2020-05-13 Under certain circumstances a user's password may be logged in cleartext in the PanGPS.log diagnostic file when logs are collected for troubleshooting on GlobalProtect app (also known as GlobalProtect…
CVE-2017-11398 2018-01-19 A session hijacking via log disclosure vulnerability in Trend Micro Smart Protection Server (Standalone) versions 3.2 and below could allow an unauthenticated attacker to hijack active user sessions t…
CVE-2015-6941 2017-08-09 win_useradd, salt-cloud and the Linode driver in salt 2015.5.x before 2015.5.6, and 2015.8.x before 2015.8.1 leak password information in debug logs.

旧名称

  • Information Leak Through Debug Log Files (2011-03-29)
  • Information Exposure Through Debug Log Files (2018-03-27)

コンテンツ投稿

名称
Anonymous Tool Vendor (under NDA)
日付
2006-07-19
バージョン
Draft 3

コンテンツの変更履歴

日付 名称 バージョン 重要度 コメント
2008-07-01 Eric Dalci 1.0 updated Potential_Mitigations, Time_of_Introduction
2008-09-08 CWE Content Team 1.0 updated Relationships, Taxonomy_Mappings
2009-03-10 CWE Content Team 1.3 updated Relationships
2011-03-29 CWE Content Team 1.12 updated Name
2011-06-01 CWE Content Team 1.13 updated Common_Consequences, Relationships, Taxonomy_Mappings
2012-05-11 CWE Content Team 2.2 updated Relationships, Taxonomy_Mappings
2012-10-30 CWE Content Team 2.3 updated Potential_Mitigations
2014-07-30 CWE Content Team 2.8 updated Relationships, Taxonomy_Mappings
2015-12-07 CWE Content Team 2.9 updated Relationships
2017-01-19 CWE Content Team 2.10 updated Relationships
2017-11-08 CWE Content Team 3.0 updated Taxonomy_Mappings
2018-03-27 CWE Content Team 3.1 updated Common_Consequences, Description, Name, Potential_Mitigations, Relationships, Taxonomy_Mappings, Time_of_Introduction, Type
2023-06-29 CWE Content Team 4.12 updated Mapping_Notes
cvelogic Threat Intelligence