upKeeper Solutions upKeeper Manager
cpe:2.3:a:upkeeper:upkeeper_manager:*:*:*:*:*:*:*
- >= 5.0.0, <= 5.2.12
A vulnerability allowing the insertion of sensitive information into log files has been identified in upKeeper Manager versions 5.0.0 prior to 5.2.12. This issue arises from the administration web or API, where users can access event history containing sensitive data. The vulnerability could be exploited to use this information for unauthorized access to file shares and their contents.
Exploitation of this vulnerability could lead to unauthorized access to file shares and their files, using information obtained from the event history.
Users can update to version 5.2.13.1 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.