Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2018-08-13 CVE-2017-1286 Information Exposure vulnerability in IBM Urbancode Deploy
Sensitive information about the configuration of the IBM UrbanCode Deploy 6.1 through 6.9.6.0 server and database can be obtained by a user who has been given elevated permissions in the UI, even after those elevated permissions have been revoked.
network
low complexity
ibm CWE-200
6.5
2018-08-10 CVE-2018-14785 Information Exposure vulnerability in Netcommwireless Nwl-25 Firmware 2.0.29.11
NetComm Wireless G LTE Light Industrial M2M Router (NWL-25) with firmware 2.0.29.11 and prior.
network
low complexity
netcommwireless CWE-200
7.5
2018-08-09 CVE-2018-7686 Information Exposure vulnerability in Microfocus Edirectory
Information leakage vulnerability in NetIQ eDirectory before 9.1.1 HF1 due to shared memory usage.
network
low complexity
microfocus CWE-200
7.5
2018-08-09 CVE-2018-14735 Information Exposure vulnerability in Hitachi products
An Information Exposure issue was discovered in Hitachi Command Suite 8.5.3.
network
low complexity
hitachi CWE-200
7.5
2018-08-07 CVE-2018-5995 Information Exposure vulnerability in Linux Kernel
The pcpu_embed_first_chunk function in mm/percpu.c in the Linux kernel through 4.14.14 allows local users to obtain sensitive address information by reading dmesg data from a "pages/cpu" printk call.
local
low complexity
linux CWE-200
5.5
2018-08-07 CVE-2018-5953 Information Exposure vulnerability in multiple products
The swiotlb_print_info function in lib/swiotlb.c in the Linux kernel through 4.14.14 allows local users to obtain sensitive address information by reading dmesg data from a "software IO TLB" printk call.
local
low complexity
linux debian CWE-200
5.5
2018-08-07 CVE-2018-15132 Information Exposure vulnerability in multiple products
An issue was discovered in ext/standard/link_win32.c in PHP before 5.6.37, 7.0.x before 7.0.31, 7.1.x before 7.1.20, and 7.2.x before 7.2.8.
network
low complexity
php netapp CWE-200
7.5
2018-08-06 CVE-2017-2654 Information Exposure vulnerability in Jenkins Email Extension
jenkins-email-ext before version 2.57.1 is vulnerable to an Information Exposure.
network
low complexity
jenkins CWE-200
5.3
2018-08-06 CVE-2018-7071 Information Exposure vulnerability in HP Network Function Virtualization Director 4.2.1
HPE has identified a remote access to sensitive information vulnerability in HPE Network Function Virtualization Director (NFVD) 4.2.1 prior to gui patch 3.
network
low complexity
hp CWE-200
4.3
2018-08-06 CVE-2018-7070 Information Exposure vulnerability in HP Centralview Fraud Risk Management
HPE has identified a remote disclosure of information vulnerability in HPE CentralView Fraud Risk Management earlier than version CV 6.1.
network
low complexity
hp CWE-200
5.3