Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2018-12-04 CVE-2018-19854 Information Exposure vulnerability in multiple products
An issue was discovered in the Linux kernel before 4.19.3.
local
high complexity
linux canonical CWE-200
4.7
2018-12-03 CVE-2018-3854 Information Exposure vulnerability in Intuit Quicken 2018 5.2.2
An exploitable information disclosure vulnerability exists in the password protection functionality of Quicken Deluxe 2018 for Mac version 5.2.2.
local
low complexity
intuit CWE-200
7.1
2018-12-03 CVE-2018-14702 Information Exposure vulnerability in Drobo 5N2 Firmware 4.0.513.28.96115
Incorrect access control in the /drobopix/api/drobo.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to retrieve sensitive system information.
network
low complexity
drobo CWE-200
7.5
2018-12-03 CVE-2018-14696 Information Exposure vulnerability in Drobo 5N2 Firmware 4.0.513.28.96115
Incorrect access control in the /mysql/api/drobo.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to retrieve sensitive system information.
network
low complexity
drobo CWE-200
7.5
2018-12-03 CVE-2018-14695 Information Exposure vulnerability in Drobo 5N2 Firmware 4.0.513.28.96115
Incorrect access control in the /mysql/api/diags.php endpoint in Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated attackers to retrieve diagnostic information via the "name" URL parameter.
network
low complexity
drobo CWE-200
7.5
2018-11-29 CVE-2018-19120 Information Exposure vulnerability in KDE Applications
The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows attackers to trigger outbound TCP connections to arbitrary IP addresses, leading to disclosure of the source IP address.
network
low complexity
kde CWE-200
7.5
2018-11-29 CVE-2018-15979 Information Exposure vulnerability in Adobe Acrobat DC
Adobe Acrobat and Reader versions 2019.008.20080 and earlier, 2017.011.30105 and earlier, and 2015.006.30456 and earlier have a ntlm sso hash theft vulnerability.
network
low complexity
adobe CWE-200
7.5
2018-11-27 CVE-2018-7977 Information Exposure vulnerability in Huawei Fusionsphere Openstack 100R006C00
There is an information leakage vulnerability on several Huawei products.
network
low complexity
huawei CWE-200
7.5
2018-11-27 CVE-2018-7961 Information Exposure vulnerability in Huawei Emily-Al00A Firmware 8.1.0.167(C00)
There is a smart SMS verification code vulnerability in some Huawei smart phones.
network
low complexity
huawei CWE-200
6.5
2018-11-27 CVE-2018-7946 Information Exposure vulnerability in Huawei Honor 7A Firmware and Honor 9 Lite Firmware
There is an information leak vulnerability in some Huawei smartphones.
low complexity
huawei CWE-200
4.3