Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-36878 Information Exposure vulnerability in Samsung Find MY Mobile
Exposure of Sensitive Information in Find My Mobile prior to version 7.2.25.14 allows local attacker to access IMEI via log.
local
low complexity
samsung CWE-200
3.3
2022-09-08 CVE-2022-38400 Information Exposure vulnerability in Synck Mailform PRO CGI
Mailform Pro CGI 4.3.1 and earlier allow a remote unauthenticated attacker to obtain the user input data by having a use of the product to access a specially crafted URL.
network
high complexity
synck CWE-200
5.9
2022-09-06 CVE-2022-2462 Information Exposure vulnerability in Transposh Wordpress Translation
The Transposh WordPress Translation plugin for WordPress is vulnerable to sensitive information disclosure to unauthenticated users in versions up to, and including, 1.0.8.1.
network
low complexity
transposh CWE-200
5.3
2022-09-06 CVE-2022-2939 Information Exposure vulnerability in Cerber WP Cerber Security, Anti-Spam & Malware Scan
The WP Cerber Security plugin for WordPress is vulnerable to security protection bypass in versions up to, and including 9.0, that makes user enumeration possible.
network
low complexity
cerber CWE-200
5.3
2022-08-29 CVE-2022-0851 Information Exposure vulnerability in multiple products
There is a flaw in convert2rhel.
local
low complexity
convert2rhel-project redhat CWE-200
5.5
2022-08-26 CVE-2021-3688 Information Exposure vulnerability in Redhat Jboss Core Services Httpd 2.4.23/2.4.29/2.4.37
A flaw was found in Red Hat JBoss Core Services HTTP Server in all versions, where it does not properly normalize the path component of a request URL contains dot-dot-semicolon(s).
network
high complexity
redhat CWE-200
4.8
2022-08-23 CVE-2021-3800 Information Exposure vulnerability in multiple products
A flaw was found in glib before version 2.63.6.
local
low complexity
gnome debian netapp CWE-200
5.5
2022-08-22 CVE-2022-31238 Information Exposure vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS, versions 9.0.0 up to and including 9.1.0.19, 9.2.1.12, 9.3.0.6, and 9.4.0.2, contain a process invoked with sensitive information vulnerability.
local
low complexity
dell CWE-200
5.5
2022-08-22 CVE-2022-2558 Information Exposure vulnerability in Presstigers Simple JOB Board
The Simple Job Board WordPress plugin before 2.10.0 is susceptible to Directory Listing which allows the public listing of uploaded resumes in certain configurations.
network
low complexity
presstigers CWE-200
5.3
2022-08-22 CVE-2022-34776 Information Exposure vulnerability in Tabit
Tabit - giftcard stealth.
network
low complexity
tabit CWE-200
7.5