CVE-2024-8097
CVSS V2 None
CVSS V3 None
Description
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Payara Platform Payara Server (Logging modules) allows Sensitive credentials posted in plain-text on the server log.This issue affects Payara Server: from 6.0.0 before 6.18.0, from 6.2022.1 before 6.2024.9, from 5.20.0 before 5.67.0, from 5.2020.2 before 5.2022.5, from 4.1.2.191.0 before 4.1.2.191.50.
Overview
- CVE ID
- CVE-2024-8097
- Assigner
- Payara
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-09-11T16:32:10.475Z
- Last Modified Date
- 2024-09-11T18:52:51.760Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://docs.payara.fish/community/docs/Release%20Notes/Release%20Notes%206.2024.9.html | release-notes |
https://docs.payara.fish/enterprise/docs/Release%20Notes/Release%20Notes%206.18.0.html | release-notes |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-8097 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-8097 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-09-12 13:06:09 | Added to TrackCVE |