CVE-2019-11492: High severity projectsend vulnerability
Published Apr 26, 2019
·Updated
ProjectSend before r1070 writes user passwords to the server logs.
Affected Software
1 affected component
ProjectSend ProjectSend<1070
Event History
Apr 26, 2019
CVE Published
via MITRE·08:02 PM
Data Sourced
via MITRE·08:02 PM
Description
Frequently Asked Questions
1
What is CVE-2019-11492?
CVE-2019-11492 is a vulnerability in ProjectSend before r1070 that allows user passwords to be written to the server logs.
2
How does CVE-2019-11492 affect ProjectSend?
CVE-2019-11492 affects ProjectSend versions before r1070 by exposing user passwords in server logs.
3
What is the severity of CVE-2019-11492?
CVE-2019-11492 has a severity rating of 7.5 (high).
4
How can I fix CVE-2019-11492 in ProjectSend?
To fix CVE-2019-11492 in ProjectSend, update to version r1070 or above.
5
Where can I find more information about CVE-2019-11492?
More information about CVE-2019-11492 can be found at the Projectsend website: [https://www.projectsend.org/change-log/](https://www.projectsend.org/change-log/)