CVE-2024-12057

Severity CVSS v4.0:
LOW
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
09/12/2024
Last modified:
09/12/2024

Description

User credentials (login &amp; password) are inserted into log files when a user tries to authenticate using a version of a Web client that is not compatible with that of the PcVue Web back end.<br /> By exploiting this vulnerability, an attacker could retrieve the credentials of a user by accessing the Log File. Successful exploitation of this vulnerability could lead to unauthorized access to the application.

References to Advisories, Solutions, and Tools