PT-2024-15915 · Microsoft · Windows+1

Published

2024-06-05

·

Updated

2024-07-18

·

CVE-2024-0912

CVSS v4.0

8.5

High

VectorAV:L/AC:L/AT:N/PR:H/UI:A/VC:H/VI:H/VA:L/SC:H/SI:H/SA:L
Name of the Vulnerable Software and Affected Versions C•CURE 9000 Web Server (affected versions not specified) Microsoft Internet Information Server (IIS) (affected versions not specified)
Description Under certain circumstances, the Microsoft Internet Information Server (IIS) used to host the C•CURE 9000 Web Server will log Microsoft Windows credential details within logs. There is no impact to non-web service interfaces of C•CURE 9000 or prior versions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Insertion into Log File

Weakness Enumeration

Related Identifiers

CVE-2024-0912

Affected Products

Internet Information Server
Windows