Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2017-04-10 CVE-2016-5051 Information Exposure vulnerability in Osram Lightify Home 1.6.1
OSRAM SYLVANIA Osram Lightify Home before 2016-07-26 stores a PSK in cleartext under /private/var/mobile/Containers/Data/Application.
network
low complexity
osram CWE-200
7.5
2017-04-10 CVE-2015-8276 Information Exposure vulnerability in Eparaksts Edoc-Libraries and Eparakstitajs 3
LVRTC eParakstitajs 3.0 (1.3.0) and edoc-libraries-2.5.4_01 allow attackers to read arbitrary files via crafted EDOC files.
local
low complexity
eparaksts CWE-200
5.5
2017-04-10 CVE-2015-2886 Information Exposure vulnerability in Ibaby M6 Baby Monitor Firmware
iBaby M6 allows remote attackers to obtain sensitive information, related to the ibabycloud.com service.
network
low complexity
ibaby CWE-200
7.5
2017-04-10 CVE-2015-2884 Information Exposure vulnerability in Philips In.Sight B12037
Philips In.Sight B120/37 allows remote attackers to obtain sensitive information via a direct request, related to yoics.net URLs, stream.m3u8 URIs, and cam_service_enable.cgi.
network
low complexity
philips CWE-200
7.5
2017-04-10 CVE-2014-2960 Information Exposure vulnerability in Visioncritical Vision Critical 20140530
Vision Critical before 2014-05-30 allows attackers to read arbitrary files via unspecified vectors, as demonstrated by image files and configuration files.
network
low complexity
visioncritical CWE-200
7.5
2017-04-09 CVE-2017-7589 Information Exposure vulnerability in Openidm Project Openidm 4.0.0/4.5.0
In OpenIDM through 4.0.0 before 4.5.0, the info endpoint may leak sensitive information upon a request by the "anonymous" user, as demonstrated by responses with a 200 HTTP status code and a JSON object containing IP address strings.
network
low complexity
openidm-project CWE-200
6.5
2017-04-07 CVE-2017-0586 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in the Qualcomm sound driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-04-07 CVE-2017-0585 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-04-07 CVE-2017-0584 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-04-07 CVE-2017-0560 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in the factory reset process could enable a local malicious attacker to access data from the previous owner.
local
low complexity
google CWE-200
5.5