Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-03-28 CVE-2019-3869 Information Exposure vulnerability in Redhat Ansible Tower
When running Tower before 3.4.3 on OpenShift or Kubernetes, application credentials are exposed to playbook job runs via environment variables.
network
low complexity
redhat CWE-200
7.2
2019-03-28 CVE-2019-1762 Information Exposure vulnerability in Cisco IOS and IOS XE
A vulnerability in the Secure Storage feature of Cisco IOS and IOS XE Software could allow an authenticated, local attacker to access sensitive system information on an affected device.
local
low complexity
cisco CWE-200
4.4
2019-03-27 CVE-2018-19643 Information Exposure vulnerability in Microfocus Solutions Business Manager
Information leakage issue in Micro Focus Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5.
network
low complexity
microfocus CWE-200
7.5
2019-03-25 CVE-2015-1012 Information Exposure vulnerability in Pfizer Lifecare PCA Infusion System Firmware 3.0/5.0
Wireless keys are stored in plain text on version 5 of the Hospira LifeCare PCA Infusion System.
network
low complexity
pfizer CWE-200
7.5
2019-03-25 CVE-2015-3952 Information Exposure vulnerability in Pifzer products
Wireless keys are stored in plain text on Hospira Plum A+ Infusion System version 13.4 and prior, Plum A+3 Infusion System version 13.6 and prior, and Symbiq Infusion System, version 3.13 and prior.
network
low complexity
pifzer CWE-200
7.5
2019-03-21 CVE-2019-7436 Information Exposure vulnerability in Opensource Classified ADS Script Project Opensource Classified ADS Script 3.2.2
PHP Scripts Mall Opensource Classified Ads Script 3.2.2 has directory traversal via a direct request for a listing of an uploads directory.
6.5
2019-03-21 CVE-2019-7434 Information Exposure vulnerability in Rental Bike Script Project Rental Bike Script 2.0.3
PHP Scripts Mall Rental Bike Script 2.0.3 has directory traversal via a direct request for a listing of an uploads directory.
network
low complexity
rental-bike-script-project CWE-200
6.5
2019-03-21 CVE-2019-7431 Information Exposure vulnerability in Image Sharing Script Project Image Sharing Script 1.3.4
PHP Scripts Mall Image Sharing Script 1.3.4 has directory traversal via a direct request for a listing of an uploads directory.
network
low complexity
image-sharing-script-project CWE-200
6.5
2019-03-21 CVE-2019-7429 Information Exposure vulnerability in Property Rental Software Project Property Rental Software 2.1.4
PHP Scripts Mall Property Rental Software 2.1.4 has directory traversal via a direct request for a listing of an uploads directory such as the wp-content/uploads/2016/08 directory.
network
low complexity
property-rental-software-project CWE-200
6.5
2019-03-21 CVE-2018-20555 Information Exposure vulnerability in Designchemical Social Network Tabs 1.7.1
The Design Chemical Social Network Tabs plugin 1.7.1 for WordPress allows remote attackers to discover Twitter access_token, access_token_secret, consumer_key, and consumer_secret values by reading the dcwp_twitter.php source code.
network
low complexity
designchemical CWE-200
critical
9.8