ProjectSend before r1070 writes user passwords to the server logs.
References
Link | Resource |
---|---|
https://www.projectsend.org/change-log/ | Release Notes Vendor Advisory |
Configurations
Information
Published : 2019-04-26 14:29
Updated : 2019-04-30 13:06
NVD link : CVE-2019-11492
Mitre link : CVE-2019-11492
JSON object : View
CWE
CWE-532
Insertion of Sensitive Information into Log File
Products Affected
projectsend
- projectsend