Northern.tech CFEngine Enterprise before 3.15.5 and 3.18.x before 3.18.1 has Insecure Permissions that may allow unauthorized local users to access the Apache and Mission Portal log files.
{
"cpe": "cpe:2.3:a:northern.tech:cfengine:*:*:*:*:enterprise:*:*:*",
"source": "CPE_FIELD",
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "3.15.5"
},
{
"introduced": "3.18.0"
},
{
"fixed": "3.18.1"
}
]
}