CWE-1323Base

Improper Management of Sensitive Trace Data

Draft in the CWE catalog · 2 CVEs mapped

2
CVEs mapped
4.6
Median CVSS
What it is

Trace data collected from several sources on the

System-on-Chip (SoC) is stored in unprotected locations or

transported to untrusted agents.

Recent examples
4.7cvss
CVE-2024-54173

IBM MQ information disclosure

IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD reveals potentially sensitive information in trace files that could be read by a local user when webconsole trace is enabled.

MEDIUMno explanation yet
0%
epss
4.4cvss
CVE-2024-49338

IBM App Connect Enterprise information disclosure

IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged user to obtain JMS credentials.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-1323
Abstraction
Base
Structure
Simple
Status
Draft
References (2)