CVE-2019-0741 is an information disclosure vulnerability in the Microsoft Azure IoT Java SDK, where sensitive data is improperly logged. This vulnerability carries a CVSS v3 score of 7.5 (High), indicating that it can be exploited remotely with low attack complexity, potentially leading to a complete compromise of confidentiality. While the vulnerability has a high FAUCET risk score, there is no evidence of active exploitation, nor are there publicly available exploit modules in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, with only one article noting its inclusion in a Microsoft patch Tuesday.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:java_software_development_kit:-:*:*:*:*:azure_internet_of_things:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.