Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2018-06-21 CVE-2018-12632 Information Exposure vulnerability in Redatam
Redatam7 (formerly Redatam WebServer) allows remote attackers to discover the installation path via an invalid LFN parameter to the /redbin/rpwebutilities.exe/text URI.
network
low complexity
redatam CWE-200
5.3
2018-06-21 CVE-2018-3665 Information Exposure vulnerability in multiple products
System software utilizing Lazy FP state restore technique on systems using Intel Core-based microprocessors may potentially allow a local process to infer data from another process through a speculative execution side channel.
5.6
2018-06-20 CVE-2018-12594 Information Exposure vulnerability in Reliablecontrols Mach-Prowebcom Firmware 7.80
Reliable Controls MACH-ProWebCom 7.80 devices allow remote attackers to obtain sensitive information via a direct request for the data/fileinfo.xml or job/job.json file, as demonstrated the Master Password field.
network
low complexity
reliablecontrols CWE-200
7.5
2018-06-20 CVE-2018-12592 Information Exposure vulnerability in Polycom Realpresence web Suite
Polycom RealPresence Web Suite before 2.2.0 does not block a user's video for a few seconds upon joining a meeting (when the user has explicitly chosen to turn off the video using a specific option).
network
low complexity
polycom CWE-200
7.5
2018-06-19 CVE-2018-1073 Information Exposure vulnerability in multiple products
The web console login form in ovirt-engine before version 4.2.3 returned different errors for non-existent users and invalid passwords, allowing an attacker to discover the names of valid user accounts.
network
low complexity
ovirt redhat CWE-200
5.3
2018-06-19 CVE-2018-12557 Information Exposure vulnerability in Zuul-Ci Zuul
An issue was discovered in Zuul 3.x before 3.1.0.
network
low complexity
zuul-ci CWE-200
critical
9.8
2018-06-18 CVE-2018-1090 Information Exposure vulnerability in multiple products
In Pulp before version 2.16.2, secrets are passed into override_config when triggering a task and then become readable to all users with read access on the distributor/importer.
network
low complexity
pulpproject fedoraproject redhat CWE-200
7.5
2018-06-18 CVE-2018-12525 Information Exposure vulnerability in Perfsonar Monitoring and Debugging Dashboard 2.0.2
An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.
network
low complexity
perfsonar CWE-200
5.3
2018-06-18 CVE-2018-12524 Information Exposure vulnerability in Perfsonar Monitoring and Debugging Dashboard 2.0.2
An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.
network
low complexity
perfsonar CWE-200
5.3
2018-06-18 CVE-2018-12523 Information Exposure vulnerability in Perfsonar Monitoring and Debugging Dashboard 2.0.2
An issue was discovered in perfSONAR Monitoring and Debugging Dashboard (MaDDash) 2.0.2.
network
low complexity
perfsonar CWE-200
5.3