Password Logging Vulnerability in ProjectSend by ProjectSend
CVE-2019-11492
7.5HIGH
What is CVE-2019-11492?
A security flaw in ProjectSend allows sensitive user passwords to be inadvertently written to server logs, posing a significant risk to user data confidentiality. This vulnerability affects all versions of ProjectSend released prior to r1070. As such, attackers or unauthorized users may gain access to sensitive information if proper logging containment measures are not in place.