Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2021-08-04 CVE-2021-34707 Information Exposure vulnerability in Cisco Evolved Programmable Network Manager
A vulnerability in the REST API of Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker to access sensitive data on an affected system.
network
low complexity
cisco CWE-200
6.5
2021-07-16 CVE-2021-21816 Information Exposure vulnerability in Dlink Dir-3040 Firmware 1.13B03
An information disclosure vulnerability exists in the Syslog functionality of D-LINK DIR-3040 1.13B03.
network
low complexity
dlink CWE-200
4.3
2021-07-16 CVE-2021-21817 Information Exposure vulnerability in Dlink Dir-3040 Firmware 1.13B03
An information disclosure vulnerability exists in the Zebra IP Routing Manager functionality of D-LINK DIR-3040 1.13B03.
network
low complexity
dlink CWE-200
7.5
2021-07-15 CVE-2021-0291 Information Exposure vulnerability in Juniper Junos 15.1/17.3/17.4
An Exposure of System Data vulnerability in Juniper Networks Junos OS and Junos OS Evolved, where a sensitive system-level resource is not being sufficiently protected, allows a network-based unauthenticated attacker to send specific traffic which partially reaches this resource.
network
low complexity
juniper CWE-200
6.5
2021-07-15 CVE-2021-20498 Information Exposure vulnerability in IBM Security Verify Access 10.0.0
IBM Security Verify Access Docker 10.0.0 reveals version information in HTTP requests that could be used in further attacks against the system.
network
low complexity
ibm CWE-200
5.3
2021-07-15 CVE-2021-21587 Information Exposure vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite versions 3.2 and earlier contain a full path disclosure vulnerability.
local
low complexity
dell CWE-200
3.3
2021-07-14 CVE-2021-0602 Information Exposure vulnerability in Google Android 10.0/11.0
In onCreateOptionsMenu of WifiNetworkDetailsFragment.java, there is a possible way for guest users to view and modify Wi-Fi settings for all configured APs due to a permissions bypass.
local
low complexity
google CWE-200
7.8
2021-07-14 CVE-2021-33687 Information Exposure vulnerability in SAP Netweaver Application Server Java
SAP NetWeaver AS JAVA (Enterprise Portal), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50 reveals sensitive information in one of their HTTP requests, an attacker can use this in conjunction with other attacks such as XSS to steal this information.
network
low complexity
sap CWE-200
4.9
2021-07-12 CVE-2021-32747 Information Exposure vulnerability in Icinga
Icinga Web 2 is an open source monitoring web interface, framework, and command-line interface.
network
low complexity
icinga CWE-200
6.5
2021-07-01 CVE-2021-32731 Information Exposure vulnerability in Xwiki 13.1
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it.
network
low complexity
xwiki CWE-200
5.3