CVE-2026-44105
Severity CVSS v4.0:
MEDIUM
Type:
CWE-532
Information Exposure Through Log Files
Publication date:
30/07/2026
Last modified:
30/07/2026
Description
The credentials for the local user "user-app" may be exposed in log files, potentially enabling a low-privileged local attacker with access to the logs to authenticate via SSH as the limited user "user-app". Charging could be interrupted.
Impact
Base Score 4.0
5.80
Severity 4.0
MEDIUM
Base Score 3.x
6.60
Severity 3.x
MEDIUM



