CWE-779Base

Logging of Excessive Data

Draft in the CWE catalog · 17 CVEs mapped

17
CVEs mapped
5.4
Median CVSS
What it is

The product logs too much information, making log files hard to process and possibly hindering recovery efforts or forensic analysis after an attack.

Recent examples
5.4cvss
CVE-2026-20210

Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only permissions to modify configurations and perform unauthorized actions on an affected system. This vulnerability exists because of a failure to redact sensitive information within device configurations and templates. An attacker could exploit this vulnerability by elevating their read-only permissions to those of a high-privileged user. A successful exploit could allow the attacker to access or modify configuration settings within Cisco Catalyst SD-WAN Manager as a high-privileged user.

MEDIUMno explanation yet
0%
epss
5.4cvss
CVE-2026-20209

Cisco Catalyst SD-WAN Manager Privilege Escalation Vulnerability

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker with read-only permissions to elevate their privileges from low to high and perform actions as a high-privileged user. This vulnerability exists because sensitive session information is recorded in audit logs. An attacker could exploit this vulnerability by elevating their read-only permissions in Cisco Catalyst SD-WAN Manager to those of a high-privileged user. A successful exploit could allow the attacker to perform actions as a high-privileged user.

MEDIUMno explanation yet
0%
epss
5.3cvss
CVE-2026-28718

Denial of service due to insufficient input validation in authentication logging

Denial of service due to insufficient input validation in authentication logging. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.

MEDIUMno explanation yet
0%
epss
The record
Technical detail
CWE ID
CWE-779
Abstraction
Base
Structure
Simple
Status
Draft