Logging of Excessive Data vulnerability in audit log of Secomea GateManager allows logged in user to write text entries in audit log. This issue affects: Secomea GateManager versions prior to 9.7.
The product logs too much information, making log files hard to process and possibly hindering recovery efforts or forensic analysis after an attack.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://www.secomea.com/support/cybersecurity-advisory/ | vendor advisory |