An insertion of sensitive information into log file vulnerability exists in PcVue versions 15 through 15.2.2. This
could allow a user with access to the log files to discover connection strings of data sources configured for the
DbConnect, which could include credentials. Successful exploitation of this vulnerability could allow other users
unauthorized access to the underlying data sources.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-08-03T01:34:50.134Z
Reserved: 2022-12-06T19:08:45.932Z
Link: CVE-2022-4311

No data.

Status : Modified
Published: 2022-12-12T18:15:13.300
Modified: 2024-11-21T07:35:00.413
Link: CVE-2022-4311

No data.