Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2018-09-25 CVE-2018-6035 Information Exposure vulnerability in multiple products
Insufficient policy enforcement in DevTools in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to potentially leak user local file data via a crafted Chrome Extension.
network
low complexity
google debian redhat CWE-200
8.8
2018-09-25 CVE-2018-15967 Information Exposure vulnerability in multiple products
Adobe Flash Player versions 30.0.0.154 and earlier have a privilege escalation vulnerability.
network
low complexity
adobe redhat CWE-200
7.5
2018-09-25 CVE-2018-15964 Information Exposure vulnerability in Adobe Coldfusion 11.0/2016/2018
Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a use of a component with a known vulnerability vulnerability.
network
low complexity
adobe CWE-200
7.5
2018-09-25 CVE-2018-15962 Information Exposure vulnerability in Adobe Coldfusion 11.0/2016/2018
Adobe ColdFusion versions July 12 release (2018.0.0.310739), Update 6 and earlier, and Update 14 and earlier have a directory listing vulnerability.
network
low complexity
adobe CWE-200
5.3
2018-09-24 CVE-2018-10498 Information Exposure vulnerability in Samsung Email
This vulnerability allows local attackers to disclose sensitive information on vulnerable installations of Samsung Email Fixed in version 5.0.02.16.
local
low complexity
samsung CWE-200
5.5
2018-09-24 CVE-2018-15615 Information Exposure vulnerability in Avaya Call Management System Supervisor 17.0.0/18.0.1.0/18.0.2.0
A vulnerability in the Supervisor component of Avaya Call Management System allows local administrative user to extract sensitive information from users connecting to a remote CMS host.
local
low complexity
avaya CWE-200
4.4
2018-09-23 CVE-2018-17404 Information Exposure vulnerability in SBI Buddy 1.41/1.42
The SBIbuddy (aka com.sbi.erupee) application 1.41 and 1.42 for Android might allow an attacker to sniff private information such as mobile number, PAN number (from a government-issued ID), and date of birth.
network
high complexity
sbi CWE-200
5.3
2018-09-23 CVE-2018-17402 Information Exposure vulnerability in Phonepe 3.0.6/3.3.26
The PhonePe wallet (aka com.PhonePe.app) application 3.0.6 through 3.3.26 for Android might allow attackers to discover the Credit/Debit card number, expiration date, and CVV number.
network
high complexity
phonepe CWE-200
5.3
2018-09-21 CVE-2018-14731 Information Exposure vulnerability in Parceljs Parcel
An issue was discovered in HMRServer.js in Parcel parcel-bundler.
network
low complexity
parceljs CWE-200
7.5
2018-09-21 CVE-2018-14730 Information Exposure vulnerability in Browserify-Hot Module Replacement Project Browserify-Hot Module Replacement
An issue was discovered in Browserify-HMR.
7.5