Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-02-05 CVE-2018-15656 Information Exposure vulnerability in 42Gears Suremdm 6.31/6.34/6.35
An issue was discovered in the registration API endpoint in 42Gears SureMDM before 2018-11-27.
network
low complexity
42gears CWE-200
7.5
2019-02-05 CVE-2018-15655 Information Exposure vulnerability in 42Gears Suremdm 6.31/6.34
An issue was discovered in 42Gears SureMDM before 2018-11-27, related to CORS settings.
network
low complexity
42gears CWE-200
6.5
2019-02-05 CVE-2019-7388 Information Exposure vulnerability in Dlink Dir-823G Firmware 1.02B03
An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03.
network
low complexity
dlink CWE-200
7.5
2019-02-04 CVE-2018-1675 Information Exposure vulnerability in IBM Tivoli Application Dependency Discovery Manager
IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could expose password hashes in stored in system memory on target systems that are configured to use TADDM.
network
low complexity
ibm CWE-200
7.5
2019-02-03 CVE-2019-7312 Information Exposure vulnerability in Primx Zed, Zedmail and Zonecentral
Limited plaintext disclosure exists in PRIMX Zed Entreprise for Windows before 6.1.2240, Zed Entreprise for Windows (ANSSI qualification submission) before 6.1.2150, Zed Entreprise for Mac before 2.0.199, Zed Entreprise for Linux before 2.0.199, Zed Pro for Windows before 1.0.195, Zed Pro for Mac before 1.0.199, Zed Pro for Linux before 1.0.199, Zed Free for Windows before 1.0.195, Zed Free for Mac before 1.0.199, and Zed Free for Linux before 1.0.199.
network
low complexity
primx CWE-200
5.3
2019-01-31 CVE-2018-18941 Information Exposure vulnerability in Vignette Content Management 6
In Vignette Content Management version 6, it is possible to gain remote access to administrator privileges by discovering the admin password in the vgn/ccb/user/mgmt/user/edit/0,1628,0,00.html?uid=admin HTML source code, and then creating a privileged user account.
network
low complexity
vignette CWE-200
critical
9.8
2019-01-30 CVE-2018-19440 Information Exposure vulnerability in ARM Trusted Firmware-A
ARM Trusted Firmware-A allows information disclosure.
network
low complexity
arm CWE-200
5.3
2019-01-30 CVE-2018-12610 Information Exposure vulnerability in Open-Xchange Appsuite
OX App Suite 7.8.4 and earlier allows Information Exposure.
network
low complexity
open-xchange CWE-200
5.3
2019-01-29 CVE-2018-1976 Information Exposure vulnerability in IBM API Connect
IBM API Connect 5.0.0.0 through 5.0.8.4 is impacted by sensitive information disclosure via a REST API that could allow a user with administrative privileges to obtain highly sensitive information.
network
low complexity
ibm CWE-200
4.9
2019-01-29 CVE-2016-10740 Information Exposure vulnerability in Atlassian Crowd
Various resources in Atlassian Crowd before version 2.10.1 allow remote attackers with administration rights to learn the passwords of configured LDAP directories by examining the responses to requests for these resources.
network
low complexity
atlassian CWE-200
4.9