Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2018-11-29 CVE-2018-19120 Information Exposure vulnerability in KDE Applications
The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows attackers to trigger outbound TCP connections to arbitrary IP addresses, leading to disclosure of the source IP address.
network
low complexity
kde CWE-200
7.5
2018-11-29 CVE-2018-15979 Information Exposure vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2019.008.20080 and earlier, 2017.011.30105 and earlier, and 2015.006.30456 and earlier have a ntlm sso hash theft vulnerability.
network
low complexity
adobe CWE-200
7.5
2018-11-27 CVE-2018-7977 Information Exposure vulnerability in Huawei Fusionsphere Openstack 100R006C00
There is an information leakage vulnerability on several Huawei products.
network
low complexity
huawei CWE-200
7.5
2018-11-27 CVE-2018-7961 Information Exposure vulnerability in Huawei Emily-Al00A Firmware 8.1.0.167(C00)
There is a smart SMS verification code vulnerability in some Huawei smart phones.
network
low complexity
huawei CWE-200
6.5
2018-11-27 CVE-2018-7946 Information Exposure vulnerability in Huawei Honor 7A Firmware and Honor 9 Lite Firmware
There is an information leak vulnerability in some Huawei smartphones.
low complexity
huawei CWE-200
4.3
2018-11-27 CVE-2018-13352 Information Exposure vulnerability in Terra-Master Terramaster Operating System 3.1.03
Session Exposure in the web application for TerraMaster TOS version 3.1.03 allows attackers to view active session tokens in a world-readable directory.
network
low complexity
terra-master CWE-200
7.5
2018-11-27 CVE-2018-10142 Information Exposure vulnerability in Paloaltonetworks Expedition 1.0.106
The Expedition Migration tool 1.0.106 and earlier may allow an unauthenticated attacker to enumerate files on the operating system.
network
low complexity
paloaltonetworks CWE-200
7.5
2018-11-27 CVE-2018-6266 Information Exposure vulnerability in Nvidia Geforce Experience
NVIDIA GeForce Experience contains a vulnerability in all versions prior to 3.16 on Windows where a local user may obtain third party integration parameters, which may lead to information disclosure.
local
low complexity
nvidia CWE-200
5.5
2018-11-27 CVE-2018-19609 Information Exposure vulnerability in Showdoc 2.4.1
ShowDoc 2.4.1 allows remote attackers to obtain sensitive information by navigating with a modified page_id, as demonstrated by reading note content, or discovering a username in the JSON data at a diff URL.
network
low complexity
showdoc CWE-200
6.5
2018-11-26 CVE-2018-13319 Information Exposure vulnerability in Buffalo Ts5600D1206 Firmware 3.610.10
Incorrect access control in get_portal_info in Buffalo TS5600D1206 version 3.61-0.10 allows attackers to determine sensitive device information via an unauthenticated POST request.
network
low complexity
buffalo CWE-200
7.5