CVE-2024-12057
Severity CVSS v4.0:
LOW
Type:
CWE-532
Information Exposure Through Log Files
Publication date:
09/12/2024
Last modified:
09/12/2024
Description
User credentials (login & password) are inserted into log files when a user tries to authenticate using a version of a Web client that is not compatible with that of the PcVue Web back end.<br />
By exploiting this vulnerability, an attacker could retrieve the credentials of a user by accessing the Log File. Successful exploitation of this vulnerability could lead to unauthorized access to the application.



