CVE-2023-31056

CloverDX before 5.17.3 writes passwords to the audit log in certain situations, if the audit log is enabled and single sign-on is not employed. The fixed versions are 5.15.4, 5.16.2, 5.17.3, and 6.0.x.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cloverdx:cloverdx:*:*:*:*:*:*:*:*
cpe:2.3:a:cloverdx:cloverdx:*:*:*:*:*:*:*:*
cpe:2.3:a:cloverdx:cloverdx:*:*:*:*:*:*:*:*
cpe:2.3:a:cloverdx:cloverdx:5.16.0:*:*:*:*:*:*:*
cpe:2.3:a:cloverdx:cloverdx:5.16.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-04-24 03:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-31056

Mitre link : CVE-2023-31056

CVE.ORG link : CVE-2023-31056


JSON object : View

Products Affected

cloverdx

  • cloverdx
CWE
CWE-532

Insertion of Sensitive Information into Log File