Back to Database
Status published
Medium
CVE-2019-10212
A flaw was found in, all under 2.0.20, in the...
Vulnerability Description
A flaw was found in, all under 2.0.20, in the Undertow DEBUG log for io.undertow.request.security. If enabled, an attacker could abuse this flaw to obtain the user's credentials from the log files.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-10212
Credits & Attribution
No credits recorded in the NVD database.
References
More from RedHat
View All →CVE-2019-3834
It was found that the fix for CVE-2014-0114 had been...
Medium
5.6
CVE-2019-19341
A flaw was found in Ansible Tower, versions 3.6.x before...
Medium
5.9
CVE-2019-10202
A series of deserialization vulnerabilities have been discovered in Codehaus...
High
8.1
CVE-2019-10176
A flaw was found in OpenShift Container Platform, versions 3.11...
Medium
4.2
CVE-2019-10171
It was found that the fix for CVE-2018-14648 in 389-ds-base,...
High
7.5
Affected Vendor
RedHat
View all reports →Affected Software
undertow
Vulnerable Versions:
all under 2.0.20
Timeline
Official Publish:
October 2nd, 2019
Last Modified:
August 4th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:L/A:N