PT-2024-23902 · Searchiq · Searchiq

Joshua Chan

·

Published

2024-04-10

·

Updated

2024-04-10

·

CVE-2024-31259

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SearchIQ versions through 4.5
Description The issue is related to the insertion of sensitive information into log files. This could potentially expose sensitive data.
Recommendations For versions through 4.5, update to a version that contains a fix for this issue, however, at the moment, there is no information about a newer version that contains a fix for this vulnerability. As a temporary workaround, consider restricting access to log files to minimize the risk of sensitive information exposure.

Insertion into Log File

Weakness Enumeration

Related Identifiers

CVE-2024-31259

Affected Products

Searchiq