Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2018-09-13 CVE-2018-8271 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists in Windows when the Windows bowser.sys kernel-mode driver fails to properly handle objects in memory, aka "Windows Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
local
low complexity
microsoft CWE-200
5.5
2018-09-12 CVE-2018-16977 Information Exposure vulnerability in Monstra 3.0.4
Monstra CMS V3.0.4 has an information leakage risk (e.g., PATH, DOCUMENT_ROOT, and SERVER_ADMIN) in libraries/Gelato/ErrorHandler/Resources/Views/Errors/exception.php.
network
low complexity
monstra CWE-200
5.3
2018-09-12 CVE-2018-7921 Information Exposure vulnerability in Huawei B315S-22 Firmware 21.318.01.00.26
Huawei B315s-22 products with software of 21.318.01.00.26 have an information leak vulnerability.
low complexity
huawei CWE-200
6.5
2018-09-12 CVE-2018-16948 Information Exposure vulnerability in multiple products
An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2.
network
low complexity
openafs debian CWE-200
7.5
2018-09-11 CVE-2016-0715 Information Exposure vulnerability in Pivotal Software Cloud Foundry Elastic Runtime
Pivotal Cloud Foundry Elastic Runtime version 1.4.0 through 1.4.5, 1.5.0 through 1.5.11 and 1.6.0 through 1.6.11 is vulnerable to a remote information disclosure.
network
high complexity
pivotal-software CWE-200
5.9
2018-09-11 CVE-2016-7047 Information Exposure vulnerability in Redhat Cloudforms and Cloudforms Management Engine
A flaw was found in the CloudForms API before 5.6.3.0, 5.7.3.1 and 5.8.1.2.
network
low complexity
redhat CWE-200
4.3
2018-09-10 CVE-2018-16705 Information Exposure vulnerability in Furuno Felcom 250 Firmware and Felcom 500 Firmware
FURUNO FELCOM 250 and 500 devices allow unauthenticated access to the xml/permission.xml file containing all of the system's usernames and passwords.
network
low complexity
furuno CWE-200
critical
9.8
2018-09-10 CVE-2016-7061 Information Exposure vulnerability in Redhat Jboss Enterprise Application Platform
An information disclosure vulnerability was found in JBoss Enterprise Application Platform before 7.0.4.
network
low complexity
redhat CWE-200
6.5
2018-09-10 CVE-2016-7078 Information Exposure vulnerability in Theforeman Foreman 1.15.0
foreman before version 1.15.0 is vulnerable to an information leak through organizations and locations feature.
network
low complexity
theforeman CWE-200
4.3
2018-09-10 CVE-2016-7077 Information Exposure vulnerability in Theforeman Foreman
foreman before 1.14.0 is vulnerable to an information leak.
network
low complexity
theforeman CWE-200
4.3