Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-04-03 CVE-2018-4379 Information Exposure vulnerability in Apple Iphone OS
A lock screen issue allowed access to the share function on a locked device.
local
low complexity
apple CWE-200
5.5
2019-04-03 CVE-2018-4355 Information Exposure vulnerability in Apple mac OS X
A configuration issue was addressed with additional restrictions.
local
low complexity
apple CWE-200
5.5
2019-04-03 CVE-2018-4352 Information Exposure vulnerability in Apple Iphone OS
A consistency issue existed in the handling of application snapshots.
local
low complexity
apple CWE-200
3.3
2019-04-03 CVE-2018-4325 Information Exposure vulnerability in Apple Iphone OS
A logic issue was addressed with improved restrictions.
low complexity
apple CWE-200
2.4
2019-04-03 CVE-2018-4311 Information Exposure vulnerability in Apple products
The issue was addressed by removing origin information.
network
low complexity
apple CWE-200
8.1
2019-04-03 CVE-2018-4300 Information Exposure vulnerability in Apple Cups
The session cookie generated by the CUPS web interface was easy to guess on Linux, allowing unauthorized scripted access to the web interface when the web interface is enabled.
network
high complexity
apple CWE-200
5.9
2019-04-03 CVE-2018-4289 Information Exposure vulnerability in Apple mac OS X
An information disclosure issue was addressed by removing the vulnerable code.
local
low complexity
apple CWE-200
5.5
2019-04-02 CVE-2018-4052 Information Exposure vulnerability in GOG Galaxy 1.2.47
An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy's Games, version 1.2.47 for macOS.
local
low complexity
gog CWE-200
5.5
2019-04-02 CVE-2018-1917 Information Exposure vulnerability in IBM products
IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could allow an authenticated user to access JSP files and disclose sensitive information.
network
low complexity
ibm CWE-200
6.5
2019-04-02 CVE-2018-1874 Information Exposure vulnerability in IBM API Connect
IBM API Connect 5.0.0.0 through 5.0.8.5 could display highly sensitive information to an attacker with physical access to the system.
low complexity
ibm CWE-200
4.6