Inclusion of Sensitive Information in Log Files in PI Vision - CVE-2019-18244
Published: January 15, 2020
PI Vision
Detailed vulnerability description
The vulnerability allows a local attacker to gain access to potentially sensitive information.
The vulnerability exists due to the affected software records the service account password in the installation log files when a non-default service account and password are specified during installation or upgrade. A local attacker can gain access to sensitive information on the target system.