Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2022-01-26 CVE-2021-29838 Information Exposure vulnerability in IBM Security Guardium Insights 3.0.0
IBM Security Guardium Insights 3.0 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
network
high complexity
ibm CWE-200
5.9
2022-01-26 CVE-2021-44692 Information Exposure vulnerability in Buddyboss
BuddyBoss Platform through 1.8.0 allows remote attackers to obtain the email address of each user.
network
low complexity
buddyboss CWE-200
5.3
2022-01-25 CVE-2021-40159 Information Exposure vulnerability in Autodesk products
An Information Disclosure vulnerability for JT files in Autodesk Inventor 2022, 2021, 2020, 2019 in conjunction with other vulnerabilities may lead to code execution through maliciously crafted JT files in the context of the current process.
local
low complexity
autodesk CWE-200
7.8
2022-01-21 CVE-2021-23195 Information Exposure vulnerability in Fresenius-Kabi products
Fresenius Kabi Vigilant Software Suite (Mastermed Dashboard) version 2.0.1.3 has the option for automated indexing (directory listing) activated.
network
low complexity
fresenius-kabi CWE-200
5.3
2022-01-20 CVE-2022-22733 Information Exposure vulnerability in Apache Shardingsphere Elasticjob-Ui 3.0.0
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache ShardingSphere ElasticJob-UI allows an attacker who has guest account to do privilege escalation.
network
low complexity
apache CWE-200
6.5
2022-01-18 CVE-2022-21683 Information Exposure vulnerability in Torchbox Wagtail
Wagtail is a Django based content management system focused on flexibility and user experience.
network
low complexity
torchbox CWE-200
4.3
2022-01-18 CVE-2021-37867 Information Exposure vulnerability in Mattermost Boards 0.10.0
Mattermost Boards plugin v0.10.0 and earlier fails to protect email addresses of all users via one of the Boards APIs, which allows authenticated and unauthorized users to access this information resulting in sensitive & private information disclosure.
network
low complexity
mattermost CWE-200
4.3
2022-01-14 CVE-2021-44702 Information Exposure vulnerability in Adobe products
Acrobat Reader DC ActiveX Control versions 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an Information Disclosure vulnerability.
network
low complexity
adobe CWE-200
4.3
2022-01-14 CVE-2021-44739 Information Exposure vulnerability in Adobe products
Acrobat Reader DC ActiveX Control versions 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by an Information Disclosure vulnerability.
network
low complexity
adobe CWE-200
4.3
2022-01-14 CVE-2022-21677 Information Exposure vulnerability in Discourse
Discourse is an open source discussion platform.
network
low complexity
discourse CWE-200
5.3