Description
Information exposure in the logging system in Yugabyte Platform allows local attackers with access to application logs to obtain database user credentials in log files, potentially leading to unauthorized database access.
Published: 2024-07-19
Score: 5.4 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-15809 Information exposure in the logging system in Yugabyte Platform allows local attackers with access to application logs to obtain database user credentials in log files, potentially leading to unauthorized database access.
History

No history.

Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: Yugabyte

Published:

Updated: 2024-08-01T17:41:15.316Z

Reserved: 2023-11-07T22:19:42.717Z

Link: CVE-2024-0006

cve-icon Vulnrichment

Updated: 2024-08-01T17:41:15.316Z

cve-icon NVD

Status : Deferred

Published: 2024-07-19T15:15:09.930

Modified: 2026-04-15T00:35:42.020

Link: CVE-2024-0006

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses
  • CWE-532

    Insertion of Sensitive Information into Log File