Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-01-18 CVE-2017-18332 Information Exposure vulnerability in Qualcomm products
Security keys are logged when any WCDMA call is configured or reconfigured in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SDA660, SDX20, SXR1130
local
low complexity
qualcomm CWE-200
5.5
2019-01-18 CVE-2018-19718 Information Exposure vulnerability in Adobe Connect
Adobe Connect versions 9.8.1 and earlier have a session token exposure vulnerability.
network
low complexity
adobe CWE-200
5.3
2019-01-17 CVE-2019-0647 Information Exposure vulnerability in Microsoft Team Foundation Server 2017/2018
An information disclosure vulnerability exists when Team Foundation Server does not properly handle variables marked as secret, aka "Team Foundation Server Information Disclosure Vulnerability." This affects Team.
network
low complexity
microsoft CWE-200
6.5
2019-01-16 CVE-2018-5738 Information Exposure vulnerability in multiple products
Change #4777 (introduced in October 2017) introduced an unforeseen issue in releases which were issued after that date, affecting which clients are permitted to make recursive queries to a BIND nameserver.
network
low complexity
isc canonical CWE-200
7.5
2019-01-12 CVE-2019-3803 Information Exposure vulnerability in Pivotal Software Concourse
Pivotal Concourse, all versions prior to 4.2.2, puts the user access token in a url during the login flow.
network
low complexity
pivotal-software CWE-200
7.5
2019-01-11 CVE-2018-4217 Information Exposure vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.5, a privacy issue in the handling of Open Directory records was addressed with improved indexing.
network
low complexity
apple CWE-200
7.5
2019-01-11 CVE-2018-4186 Information Exposure vulnerability in Apple Safari
In Safari before 11.1, an information leakage issue existed in the handling of downloads in Safari Private Browsing.
network
low complexity
apple CWE-200
7.5
2019-01-11 CVE-2018-4185 Information Exposure vulnerability in Apple products
In iOS before 11.3, tvOS before 11.3, watchOS before 4.3, and macOS before High Sierra 10.13.4, an information disclosure issue existed in the transition of program state.
network
low complexity
apple CWE-200
7.5
2019-01-11 CVE-2018-4179 Information Exposure vulnerability in Apple mac OS X
In macOS High Sierra before 10.13.4, there was an issue with the handling of smartcard PINs.
local
low complexity
apple CWE-200
5.5
2019-01-11 CVE-2016-4644 Information Exposure vulnerability in Apple Iphone OS
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain.
network
low complexity
apple CWE-200
6.5