Cleartext PAT Exposure in Tableau Server Versions Before 2022.1.3
A Cleartext Storage of Sensitive Information vulnerability exists in Salesforce Tableau Server that can record the Personal Access Token (PAT) into logging repositories. This security weakness impacts multiple versions of Tableau Server, specifically versions before 2022.1.3, before 2021.4.8, before 2021.3.13, before 2021.2.14, before 2021.1.16, and before 2020.4.19. The vulnerability allows sensitive authentication tokens to be stored in plaintext logs, potentially exposing them to unauthorized access or misuse.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
salesforce tableau server |