Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-36878 Information Exposure vulnerability in Samsung Find MY Mobile
Exposure of Sensitive Information in Find My Mobile prior to version 7.2.25.14 allows local attacker to access IMEI via log.
local
low complexity
samsung CWE-200
3.3
2022-09-08 CVE-2022-38400 Information Exposure vulnerability in Synck Mailform PRO CGI
Mailform Pro CGI 4.3.1 and earlier allow a remote unauthenticated attacker to obtain the user input data by having a use of the product to access a specially crafted URL.
network
high complexity
synck CWE-200
5.9
2022-09-06 CVE-2022-2462 Information Exposure vulnerability in Transposh Wordpress Translation
The Transposh WordPress Translation plugin for WordPress is vulnerable to sensitive information disclosure to unauthenticated users in versions up to, and including, 1.0.8.1.
network
low complexity
transposh CWE-200
5.3
2022-09-06 CVE-2022-2939 Information Exposure vulnerability in Cerber WP Cerber Security, Anti-Spam & Malware Scan
The WP Cerber Security plugin for WordPress is vulnerable to security protection bypass in versions up to, and including 9.0, that makes user enumeration possible.
network
low complexity
cerber CWE-200
5.3
2022-08-22 CVE-2022-31238 Information Exposure vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain a process invoked with sensitive information vulnerability.
local
low complexity
dell CWE-200
5.5
2022-08-22 CVE-2022-34776 Information Exposure vulnerability in Tabit
Tabit - giftcard stealth.
network
low complexity
tabit CWE-200
7.5
2022-08-18 CVE-2022-30693 Information Exposure vulnerability in Cybozu Office
Information disclosure vulnerability in the system configuration of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to obtain the data of the product via unspecified vectors.
network
low complexity
cybozu CWE-200
5.3
2022-08-17 CVE-2022-35147 Information Exposure vulnerability in Html-Js Doracms
DoraCMS v2.18 and earlier allows attackers to bypass login authentication via a crafted HTTP request.
network
low complexity
html-js CWE-200
critical
9.8
2022-08-05 CVE-2022-27633 Information Exposure vulnerability in TCL Linkhub Mesh Wifi Ac1200 Ms1G0001.0014
An information disclosure vulnerability exists in the confctl_get_guest_wlan functionality of TCL LinkHub Mesh Wifi MS1G_00_01.00_14.
network
low complexity
tcl CWE-200
7.5
2022-08-05 CVE-2022-36834 Information Exposure vulnerability in Samsung Game Launcher
Exposure of Sensitive Information vulnerability in Game Launcher prior to version 6.0.07 allows local attacker to access app data with user interaction.
local
low complexity
samsung CWE-200
5.0