CVE-2021-3034
medium
📛 Threat Title
Cortex XSOAR: Secrets for SAML single sign-on (SSO) integration may be logged in system logs
Description
An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO) integration can be logged to the '/var/log/demisto...
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
cve
CVE-2021-3034
IOC database
- Type
- cve
- Value
CVE-2021-3034- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Cortex XSOAR: Secrets for SAML single sign-on (SSO) integration may be logged in system logs
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
References (1)
-
Palo Alto Networks advisory: CVE-2021-3034
Paloalto Networks Security
An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for the SAML single sign-on (SSO) integration can be logged to the '/var/log/demisto...
Remediations (8)
-
web:federalnewsnetwork.com
AI drives new debate around CISA software patching deadlines CISA this year has already started accelerating the deadlines for agencies to patch software bugs posted to the Known Exploited Vulnerabilities (KEV) catalog.
-
web:portal.msrc.microsoft.com
The Security Update Guide provides information on the latest Microsoft security updates, helping users understand and address potential vulnerabilities effectively.
-
web:support.microsoft.com
Summary Improvements and fixes included in this update How to obtain and install the update How to obtain or download the latest cumulative update package for Linux More information File information Information about protection and security Summary This security update contains fixes and resolves vulnerabilities. To learn more about the vulnerabilities, see the following security advisories ...
-
web:windowsreport.com
Microsoft has released its May 2026 Patch Tuesday updates for Windows 11 and Windows 10, shipping as KB5089549 and KB5087544. The updates include fixes for more than 130 security vulnerabilities across Windows, Office, SharePoint, DNS components, and core system services, as Bleeping Computer writes. While no publicly disclosed zero-day vulnerabilities were reported this month, the […]
-
web:www.bleepingcomputer.com
Today is Microsoft's January 2026 Patch Tuesday with security updates for 114 flaws, including one actively exploited and two publicly disclosed zero-day vulnerabilities.
-
web:www.ninjaone.com
Community and technical sentiment regarding KB5087054 remains neutral to positive, primarily because the patch addresses legitimate security concerns without introducing reported complications during initial deployment phases. The absence of documented known issues from Microsoft's official channels suggests a relatively stable release profile.
-
web:www.techrepublic.com
Microsoft's April 2026 Patch Tuesday fixes 165 vulnerabilities, including two zero-days, in one of the company's largest monthly security updates.
-
web:www.windowscentral.com
A faulty BitLocker configuration is forcing some PCs into BitLocker recovery mode after the April 2026 update, but there's a workaround to resolve this issue.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.