Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2017-10-23 CVE-2017-7116 Information Exposure vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-200
7.5
2017-10-23 CVE-2017-7090 Information Exposure vulnerability in Apple products
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-200
7.5
2017-10-23 CVE-2017-7082 Information Exposure vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
low complexity
apple CWE-200
2.4
2017-10-20 CVE-2017-13127 Information Exposure vulnerability in VIP
The VIP.com application for IOS and Android allows remote attackers to obtain sensitive information and hijack the authentication of users via a rogue access point and a man-in-the-middle attack.
network
high complexity
vip CWE-200
8.1
2017-10-20 CVE-2017-2131 Information Exposure vulnerability in Panasonic Kx-Hjb1000 Firmware Ghx1Yg14.50/Hjb10004.47
Panasonic KX-HJB1000 Home unit devices with firmware GHX1YG 14.50 or HJB1000_4.47 allow an attacker to bypass access restrictions to view the configuration menu via unspecified vectors.
network
low complexity
panasonic CWE-200
5.3
2017-10-19 CVE-2015-6668 Information Exposure vulnerability in Wp-Jobmanager JOB Manager
The Job Manager plugin before 0.7.25 allows remote attackers to read arbitrary CV files via a brute force attack to the WordPress upload directory structure, related to an insecure direct object reference.
network
low complexity
wp-jobmanager CWE-200
7.5
2017-10-19 CVE-2012-4382 Information Exposure vulnerability in Mediawiki
MediaWiki before 1.18.5, and 1.19.x before 1.19.2 does not properly protect user block metadata, which allows remote administrators to read a user block reason via a reblock attempt.
network
low complexity
mediawiki CWE-200
4.9
2017-10-19 CVE-2017-10422 Information Exposure vulnerability in Oracle Peoplesoft Enterprise Peopletools 8.54
Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Updates Change Assistant).
network
high complexity
oracle CWE-200
5.9
2017-10-19 CVE-2017-10421 Information Exposure vulnerability in Oracle Hospitality Suite8 8.10.1/8.10.2
Vulnerability in the Oracle Hospitality Suite8 component of Oracle Hospitality Applications (subcomponent: Leisure).
network
low complexity
oracle CWE-200
6.5
2017-10-19 CVE-2017-10383 Information Exposure vulnerability in Oracle Hospitality Guest Access 4.2.0/4.2.1
Vulnerability in the Oracle Hospitality Guest Access component of Oracle Hospitality Applications (subcomponent: Interface).
network
low complexity
oracle CWE-200
5.3