Vulnerabilities > Exposure of Private Information ('Privacy Violation')

DATE CVE VULNERABILITY TITLE RISK
2024-11-19 CVE-2024-37070 IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 could allow an authenticated user to obtain sensitive information that could aid in further attacks against the system.
network
low complexity
CWE-359
4.3
2024-11-14 CVE-2024-49025 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
network
low complexity
CWE-359
5.4
2024-10-17 CVE-2024-49386 Privacy Violation vulnerability in Acronis Cyber Files
Sensitive information disclosure due to spell-jacking.
low complexity
acronis CWE-359
5.7
2024-07-24 CVE-2024-37533 Privacy Violation vulnerability in IBM Infosphere Information Server 11.7
IBM InfoSphere Information Server 11.7 could disclose sensitive user information to another user with physical access to the machine.
low complexity
ibm CWE-359
4.6
2023-11-22 CVE-2023-5983 Privacy Violation vulnerability in Botanikyazilim Pharmacy Automation
Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Botanik Software Pharmacy Automation allows Retrieve Embedded Sensitive Data.This issue affects Pharmacy Automation: before 2.1.133.0.
network
low complexity
botanikyazilim CWE-359
7.5
2023-10-05 CVE-2023-44213 Privacy Violation vulnerability in Acronis Agent
Sensitive information disclosure due to excessive collection of system information.
local
low complexity
acronis CWE-359
5.5
2023-05-23 CVE-2023-2703 Privacy Violation vulnerability in Finexmedia Competition Management System
Exposure of Private Personal Information to an Unauthorized Actor vulnerability in Finex Media Competition Management System allows Retrieve Embedded Sensitive Data, Collect Data as Provided by Users.This issue affects Competition Management System: before 23.07.
network
low complexity
finexmedia CWE-359
7.5
2023-04-22 CVE-2023-2239 Privacy Violation vulnerability in Microweber
Exposure of Private Personal Information to an Unauthorized Actor in GitHub repository microweber/microweber prior to 1.3.4.
network
low complexity
microweber CWE-359
6.5
2023-01-05 CVE-2022-46168 Privacy Violation vulnerability in Discourse
Discourse is an option source discussion platform.
network
low complexity
discourse CWE-359
3.5
2022-11-22 CVE-2022-41936 Privacy Violation vulnerability in Xwiki
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.
network
low complexity
xwiki CWE-359
7.5