CWE-778 · 33 записей
Insufficient Logging
CVE этого класса
33 записей
| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2024-48967Эксплойта нет | Life2000 ventilator and Service PC lack sufficient audit logging capabilitiesbaxter · life2000 ventilation system · CWE-778 | Критическая10,0 | — | 0,6 % | 14 нояб. 2024 г. |
35Наблюдать | CVE-2026-76208Эксплойта нет | phpMyFAQ 3.1.0 through 4.1.6 Authentication Bypass via LDAPphpmyfaq · phpmyfaq · CWE-778 | Высокая8,8 | — | 0,4 % | 19 авг. 2026 г. |
34Наблюдать | CVE-2026-82863Эксплойта нет | @hulumi/baseline before 1.3.2 CloudTrail Selector Tampering Detectionhulumi · baseline · CWE-778 | Высокая8,7 | — | 0,2 % | 31 авг. 2026 г. |
32Наблюдать | CVE-2025-52644Эксплойта нет | HCL AION is affected by a vulnerability where certain user actions are not adequately audited or logged.hcltech · aion · CWE-778 | Высокая8,2 | — | 0,1 % | 16 мар. 2026 г. |
30Наблюдать | CVE-2019-7613Эксплойта нет | Winlogbeat versions before 5.6.16 and 6.6.2 had an insufficient logging flaw.elastic · winlogbeat · CWE-778 | Высокая7,5 | — | 1,3 % | 25 мар. 2019 г. |
30Наблюдать | CVE-2021-43419Эксплойта нет | An Information Disclosure vulnerability exists in Opay Mobile application 1.5.1.26 and maybe be higher in the logcat app.opayweb · opay · CWE-778 | Высокая7,5 | — | 0,7 % | 7 нояб. 2023 г. |
30Наблюдать | CVE-2022-30305Эксплойта нет | An insufficient logging [CWE-778] vulnerability in FortiSandbox versions 4.0.0 to 4.0.2, 3.2.0 to 3.2.3 and 3.1.0 to 3.1.5 and FortiDeceptorfortinet · fortideceptor · CWE-778 | Высокая7,5 | — | 0,6 % | 6 дек. 2022 г. |
30Наблюдать | CVE-2023-1995Эксплойта нет | Insufficient Logging Vulnerability in HiRDBhitachi · hirdb server with additional function · CWE-778 | Высокая7,5 | — | 0,5 % | 28 авг. 2023 г. |
30Наблюдать | CVE-2026-22279Эксплойта нет | Dell PowerScale OneFS, versions prior 9.13.0.0, contains an insufficient logging vulnerability.dell · powerscale onefs · CWE-778 | Высокая7,5 | — | 0,3 % | 22 янв. 2026 г. |
27Наблюдать | CVE-2020-37268Эксплойта нет | Coq and Rocq Prover Print Assumptions Omits Unsafe Universe Checking Inlined Through Parameter Inlinerocq-prover · rocq · CWE-778 | Средняя6,8 | — | 0,2 % | 24 авг. 2026 г. |
26Наблюдать | CVE-2019-19277Эксплойта нет | A vulnerability has been identified in SIPORT MP (All versions < 3.1.4).siemens · siport mp · CWE-778 | Средняя6,5 | — | 1,2 % | 10 мар. 2020 г. |
26Наблюдать | CVE-2026-66816Эксплойта нет | Microsoft SQL Server Security Feature Bypass Vulnerabilitymicrosoft · sql server 2022 · CWE-778 | Средняя6,5 | — | 1,0 % | 8 сент. 2026 г. |
25Наблюдать | CVE-2026-25598Эксплойта нет | Bypassing Logging of Outbound Connections Using sendto, sendmsg, and sendmmsg in Harden-Runner (Community Tier)stepsecurity · harden-runner · CWE-778 | Средняя6,3 | — | 0,4 % | 9 февр. 2026 г. |
21Наблюдать | CVE-2025-2562Эксплойта нет | Insufficient logging in the autotyping feature in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use a storeddevolutions · remote desktop manager · CWE-778 | Средняя5,4 | — | 0,4 % | 26 мар. 2025 г. |
21Наблюдать | CVE-2026-3494Proof of concept | MariaDB Server Audit Plugin Comment Handling Bypassmariadb · mariadb · CWE-778 | Средняя5,3 | — | 0,4 % | 3 мар. 2026 г. |
21Наблюдать | CVE-2025-32967Эксплойта нет | OpenEMR doesn't log password administration properlyopen-emr · openemr · CWE-778 | Средняя5,4 | — | 0,3 % | 23 мая 2025 г. |
21Наблюдать | CVE-2025-53498Эксплойта нет | Lack of Audit Logging in AbuseFilterwikimedia foundation · mediawiki - abusefilter extension · CWE-778 | Средняя5,3 | — | 0,3 % | 7 июл. 2025 г. |
21Наблюдать | CVE-2025-62307Эксплойта нет | HCL IntelliOps Event Management is affected by multiple security vulnerabilities.hcl software · iem · CWE-778 | Средняя5,4 | — | 0,3 % | 20 авг. 2026 г. |
20Наблюдать | CVE-2026-92002Эксплойта нет | MISP: Authentication failure logging suppressed during Redis unavailabilitymisp · misp · CWE-778 | Средняя5,1 | — | 0,5 % | 15 сент. 2026 г. |
20Наблюдать | CVE-2024-10863Эксплойта нет | Client-side audit exclusion vulnerabilityopentext · secure content manager · CWE-778 | Средняя5,1 | — | 0,5 % | 22 нояб. 2024 г. |
17Наблюдать | CVE-2019-19295Эксплойта нет | A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0).siemens · sinvr 3 central control server · CWE-778 | Средняя4,3 | — | 1,1 % | 10 мар. 2020 г. |
17Наблюдать | CVE-2022-25783Эксплойта нет | Hacking attempts from logged-in users are not properly logged by GMsecomea · gatemanager 4250 firmware · CWE-778 | Средняя4,3 | — | 0,6 % | 4 мая 2022 г. |
17Наблюдать | CVE-2021-33689Эксплойта нет | When user with insufficient privileges tries to access any application in SAP NetWeaver Administrator (Administrator applications), version sap · netweaver application server java · CWE-778 | Средняя4,3 | — | 0,5 % | 14 июл. 2021 г. |
17Наблюдать | CVE-2024-2291Эксплойта нет | MOVEit Transfer Logging Bypass Vulnerabilityprogress · moveit transfer · CWE-778 | Средняя4,3 | — | 0,4 % | 20 мар. 2024 г. |
17Наблюдать | CVE-2025-66552Эксплойта нет | Nextcloud Server admin_audit does not log all actions on files in groupfoldersnextcloud · nextcloud server · CWE-778 | Средняя4,3 | — | 0,3 % | 5 дек. 2025 г. |
- CVE-2024-4896740В плане
Life2000 ventilator and Service PC lack sufficient audit logging capabilities
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %baxter · life2000 ventilation system14 нояб. 2024 г.
- CVE-2026-7620835Наблюдать
phpMyFAQ 3.1.0 through 4.1.6 Authentication Bypass via LDAP
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %phpmyfaq · phpmyfaq19 авг. 2026 г.
- CVE-2026-8286334Наблюдать
@hulumi/baseline before 1.3.2 CloudTrail Selector Tampering Detection
ВысокаяCVSS 8,7Эксплойта нетEPSS 0 %hulumi · baseline31 авг. 2026 г.
- CVE-2025-5264432Наблюдать
HCL AION is affected by a vulnerability where certain user actions are not adequately audited or logged.
ВысокаяCVSS 8,2Эксплойта нетEPSS 0 %hcltech · aion16 мар. 2026 г.
- CVE-2019-761330Наблюдать
Winlogbeat versions before 5.6.16 and 6.6.2 had an insufficient logging flaw.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %elastic · winlogbeat25 мар. 2019 г.
- CVE-2021-4341930Наблюдать
An Information Disclosure vulnerability exists in Opay Mobile application 1.5.1.26 and maybe be higher in the logcat app.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %opayweb · opay7 нояб. 2023 г.
- CVE-2022-3030530Наблюдать
An insufficient logging [CWE-778] vulnerability in FortiSandbox versions 4.0.0 to 4.0.2, 3.2.0 to 3.2.3 and 3.1.0 to 3.1.5 and FortiDeceptor
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %fortinet · fortideceptor6 дек. 2022 г.
- CVE-2023-199530Наблюдать
Insufficient Logging Vulnerability in HiRDB
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %hitachi · hirdb server with additional function28 авг. 2023 г.
- CVE-2026-2227930Наблюдать
Dell PowerScale OneFS, versions prior 9.13.0.0, contains an insufficient logging vulnerability.
ВысокаяCVSS 7,5Эксплойта нетEPSS 0 %dell · powerscale onefs22 янв. 2026 г.
- CVE-2020-3726827Наблюдать
Coq and Rocq Prover Print Assumptions Omits Unsafe Universe Checking Inlined Through Parameter Inline
СредняяCVSS 6,8Эксплойта нетEPSS 0 %rocq-prover · rocq24 авг. 2026 г.
- CVE-2019-1927726Наблюдать
A vulnerability has been identified in SIPORT MP (All versions < 3.1.4).
СредняяCVSS 6,5Эксплойта нетEPSS 1 %siemens · siport mp10 мар. 2020 г.
- CVE-2026-6681626Наблюдать
Microsoft SQL Server Security Feature Bypass Vulnerability
СредняяCVSS 6,5Эксплойта нетEPSS 1 %microsoft · sql server 20228 сент. 2026 г.
- CVE-2026-2559825Наблюдать
Bypassing Logging of Outbound Connections Using sendto, sendmsg, and sendmmsg in Harden-Runner (Community Tier)
СредняяCVSS 6,3Эксплойта нетEPSS 0 %stepsecurity · harden-runner9 февр. 2026 г.
- CVE-2025-256221Наблюдать
Insufficient logging in the autotyping feature in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use a stored
СредняяCVSS 5,4Эксплойта нетEPSS 0 %devolutions · remote desktop manager26 мар. 2025 г.
- CVE-2026-349421Наблюдать
MariaDB Server Audit Plugin Comment Handling Bypass
СредняяCVSS 5,3Proof of conceptEPSS 0 %mariadb · mariadb3 мар. 2026 г.
- CVE-2025-3296721Наблюдать
OpenEMR doesn't log password administration properly
СредняяCVSS 5,4Эксплойта нетEPSS 0 %open-emr · openemr23 мая 2025 г.
- CVE-2025-5349821Наблюдать
Lack of Audit Logging in AbuseFilter
СредняяCVSS 5,3Эксплойта нетEPSS 0 %wikimedia foundation · mediawiki - abusefilter extension7 июл. 2025 г.
- CVE-2025-6230721Наблюдать
HCL IntelliOps Event Management is affected by multiple security vulnerabilities.
СредняяCVSS 5,4Эксплойта нетEPSS 0 %hcl software · iem20 авг. 2026 г.
- CVE-2026-9200220Наблюдать
MISP: Authentication failure logging suppressed during Redis unavailability
СредняяCVSS 5,1Эксплойта нетEPSS 1 %misp · misp15 сент. 2026 г.
- CVE-2024-1086320Наблюдать
Client-side audit exclusion vulnerability
СредняяCVSS 5,1Эксплойта нетEPSS 0 %opentext · secure content manager22 нояб. 2024 г.
- CVE-2019-1929517Наблюдать
A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0).
СредняяCVSS 4,3Эксплойта нетEPSS 1 %siemens · sinvr 3 central control server10 мар. 2020 г.
- CVE-2022-2578317Наблюдать
Hacking attempts from logged-in users are not properly logged by GM
СредняяCVSS 4,3Эксплойта нетEPSS 1 %secomea · gatemanager 4250 firmware4 мая 2022 г.
- CVE-2021-3368917Наблюдать
When user with insufficient privileges tries to access any application in SAP NetWeaver Administrator (Administrator applications), version
СредняяCVSS 4,3Эксплойта нетEPSS 1 %sap · netweaver application server java14 июл. 2021 г.
- CVE-2024-229117Наблюдать
MOVEit Transfer Logging Bypass Vulnerability
СредняяCVSS 4,3Эксплойта нетEPSS 0 %progress · moveit transfer20 мар. 2024 г.
- CVE-2025-6655217Наблюдать
Nextcloud Server admin_audit does not log all actions on files in groupfolders
СредняяCVSS 4,3Эксплойта нетEPSS 0 %nextcloud · nextcloud server5 дек. 2025 г.