Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2018-10-29 CVE-2018-18710 Information Exposure vulnerability in multiple products
An issue was discovered in the Linux kernel through 4.19.
local
low complexity
linux canonical debian CWE-200
5.5
2018-10-26 CVE-2018-6559 Information Exposure vulnerability in multiple products
The Linux kernel, as used in Ubuntu 18.04 LTS and Ubuntu 18.10, allows local users to obtain names of files in which they would not normally be able to access via an overlayfs mount inside of a user namespace.
local
low complexity
linux canonical CWE-200
3.3
2018-10-26 CVE-2018-18658 Information Exposure vulnerability in Arcserve UDP 6.0/6.5
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4.
network
low complexity
arcserve CWE-200
7.5
2018-10-26 CVE-2018-18657 Information Exposure vulnerability in Arcserve UDP 6.0/6.5
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4.
network
low complexity
arcserve CWE-200
7.5
2018-10-26 CVE-2018-11846 Information Exposure vulnerability in Qualcomm products
The use of a non-time-constant memory comparison operation can lead to timing/side channel attacks in Snapdragon Mobile in version SD 210/SD 212/SD 205, SD 845, SD 850
local
high complexity
qualcomm CWE-200
4.7
2018-10-26 CVE-2018-18655 Information Exposure vulnerability in Prayer Project Prayer
Prayer through 1.3.5 sends a Referer header, containing a user's username, when a user clicks on a link in their email because header.t lacks a no-referrer setting.
network
low complexity
prayer-project CWE-200
4.3
2018-10-24 CVE-2018-18566 Information Exposure vulnerability in Polycom Unified Communications Software
The SIP service in Polycom VVX 500 and 601 devices 5.8.0.12848 and earlier allow remote attackers to obtain sensitive phone configuration information by leveraging use with an on-premise installation with Skype for Business.
network
low complexity
polycom CWE-200
5.3
2018-10-23 CVE-2018-18467 Information Exposure vulnerability in Conversations 2.3.4
An issue was discovered in Daniel Gultsch Conversations 2.3.4.
network
low complexity
conversations CWE-200
7.5
2018-10-23 CVE-2017-18300 Information Exposure vulnerability in Qualcomm products
Secure display content could be accessed by third party trusted application after creating a fault in other trusted applications in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 835, SDA660.
local
low complexity
qualcomm CWE-200
5.5
2018-10-19 CVE-2018-18428 Information Exposure vulnerability in Tp-Link Tl-Sc3130 Firmware 1.6.18P12121101
TP-Link TL-SC3130 1.6.18P12_121101 devices allow unauthenticated RTSP stream access, as demonstrated by a /jpg/image.jpg URI.
network
low complexity
tp-link CWE-200
7.5