Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2018-10-01 CVE-2018-17216 Information Exposure vulnerability in PTC Thingworx Platform
An issue was discovered in PTC ThingWorx Platform 6.5 through 8.2.
network
low complexity
ptc CWE-200
6.5
2018-09-29 CVE-2018-17780 Information Exposure vulnerability in Telegram Desktop and Telegram Messenger
Telegram Desktop (aka tdesktop) 1.3.14, and Telegram 3.3.0.0 WP8.1 on Windows, leaks end-user public and private IP addresses during a call because of an unsafe default behavior in which P2P connections are accepted from clients outside of the My Contacts list.
network
low complexity
telegram CWE-200
6.5
2018-09-29 CVE-2018-17781 Information Exposure vulnerability in Foxitsoftware Phantompdf
Foxit PhantomPDF and Reader before 9.3 allow remote attackers to trigger Uninitialized Object Information Disclosure because creation of ArrayBuffer and DataView objects is mishandled.
network
low complexity
foxitsoftware CWE-200
7.5
2018-09-28 CVE-2018-17155 Information Exposure vulnerability in Freebsd
In FreeBSD before 11.2-STABLE(r338983), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338984), and 10.4-RELEASE-p13, due to insufficient initialization of memory copied to userland in the getcontext and swapcontext system calls, small amounts of kernel memory may be disclosed to userland processes.
local
low complexity
freebsd CWE-200
5.5
2018-09-26 CVE-2018-16712 Information Exposure vulnerability in Iobit Advanced Systemcare 1.2.0.5
IObit Advanced SystemCare, which includes Monitor_win10_x64.sys or Monitor_win7_x64.sys, 1.2.0.5 (and possibly earlier versions) allows a user to send a specially crafted IOCTL 0x9C406104 to read physical memory.
network
low complexity
iobit CWE-200
6.5
2018-09-26 CVE-2018-16969 Information Exposure vulnerability in Citrix Sharefile Storagezones Controller
Citrix ShareFile StorageZones Controller before 5.4.2 has Information Exposure Through an Error Message.
network
low complexity
citrix CWE-200
4.3
2018-09-26 CVE-2018-17555 Information Exposure vulnerability in Commscope Arris Tg2492Lg-Na Firmware 061213
The web component on ARRIS TG2492LG-NA 061213 devices allows remote attackers to obtain sensitive information via the /snmpGet oids parameter.
network
low complexity
commscope CWE-200
7.5
2018-09-26 CVE-2018-14803 Information Exposure vulnerability in Philips E-Alert Firmware 2.1/R2.1
Philips e-Alert Unit (non-medical device), Version R2.1 and prior.
network
low complexity
philips CWE-200
5.3
2018-09-26 CVE-2018-16672 Information Exposure vulnerability in Circontrol Circarlife Scada
An issue was discovered in CIRCONTROL CirCarLife before 4.3.
network
low complexity
circontrol CWE-200
6.5
2018-09-26 CVE-2018-7907 Information Exposure vulnerability in Huawei products
Some Huawei products Agassi-L09 AGS-L09C100B257CUSTC100D001, AGS-L09C170B253CUSTC170D001, AGS-L09C199B251CUSTC199D001, AGS-L09C229B003CUSTC229D001, Agassi-W09 AGS-W09C100B257CUSTC100D001, AGS-W09C128B252CUSTC128D001, AGS-W09C170B252CUSTC170D001, AGS-W09C229B251CUSTC229D001, AGS-W09C331B003CUSTC331D001, AGS-W09C794B001CUSTC794D001, Baggio2-U01A BG2-U01C100B160CUSTC100D001, BG2-U01C170B160CUSTC170D001, BG2-U01C199B162CUSTC199D001, BG2-U01C209B160CUSTC209D001, BG2-U01C333B160CUSTC333D001, Bond-AL00C Bond-AL00CC00B201, Bond-AL10B Bond-AL10BC00B201, Bond-TL10B Bond-TL10BC01B201, Bond-TL10C Bond-TL10CC01B131, Haydn-L1JB HDN-L1JC137B068, Kobe-L09A KOB-L09C100B252CUSTC100D001, KOB-L09C209B002CUSTC209D001, KOB-L09C362B001CUSTC362D001, Kobe-L09AHN KOB-L09C233B226, Kobe-W09C KOB-W09C128B251CUSTC128D001, LelandP-L22C 8.0.0.101(C675CUSTC675D2), LelandP-L22D 8.0.0.101(C675CUSTC675D2), Rhone-AL00 Rhone-AL00C00B186, Selina-L02 Selina-L02C432B153, Stanford-L09S Stanford-L09SC432B183, Toronto-AL00 Toronto-AL00C00B223, Toronto-AL00A Toronto-AL00AC00B223, Toronto-TL10 Toronto-TL10C01B223 have a sensitive information leak vulnerability.
local
low complexity
huawei CWE-200
5.5