Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2017-04-05 CVE-2017-0330 Information Exposure vulnerability in Linux Kernel 3.10
An information disclosure vulnerability in the NVIDIA crypto driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-04-05 CVE-2017-0328 Information Exposure vulnerability in Linux Kernel 3.10
An information disclosure vulnerability in the NVIDIA crypto driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-04-04 CVE-2017-5649 Information Exposure vulnerability in Apache Geode 1.0.0/1.1.0
Apache Geode before 1.1.1, when a cluster has enabled security by setting the security-manager property, allows remote authenticated users with CLUSTER:READ but not DATA:READ permission to access the data browser page in Pulse and consequently execute an OQL query that exposes data stored in the cluster.
network
low complexity
apache CWE-200
7.5
2017-04-04 CVE-2017-5670 Information Exposure vulnerability in Riverbed Rios
Riverbed RiOS through 9.6.0 deletes the secure vault with the rm program (not shred or srm), which makes it easier for physically proximate attackers to obtain sensitive information by reading raw disk blocks.
low complexity
riverbed CWE-200
4.6
2017-04-03 CVE-2014-1677 Information Exposure vulnerability in Technicolor Tc7200 Firmware Std6.01.12
Technicolor TC7200 with firmware STD6.01.12 could allow remote attackers to obtain sensitive information.
network
low complexity
technicolor CWE-200
7.5
2017-04-03 CVE-2016-10314 Information Exposure vulnerability in Jensenofscandinavia Al3G Firmware, Al5000Ac Firmware and Al59300 Firmware
Jensen of Scandinavia AS Air:Link 3G (AL3G) version 2.23m (Rev.
network
low complexity
jensenofscandinavia CWE-200
8.8
2017-04-02 CVE-2016-8757 Information Exposure vulnerability in Huawei P9 Firmware
ION memory management module in Huawei P9 phones with software EVA-AL10C00B192 and earlier versions, EVA-DL10C00B192 and earlier versions, EVA-TL10C00B192 and earlier versions, EVA-CL10C00B192 and earlier versions allows attackers to obtain sensitive information from uninitialized memory.
local
low complexity
huawei CWE-200
3.3
2017-04-02 CVE-2016-8272 Information Exposure vulnerability in Huawei Hisuite 4.0.5.300Ove
Huawei PC client software HiSuite 4.0.5.300_OVE has an information leak vulnerability; an attacker who can log in to the system can copy out the user's proxy password, causing information leaks.
local
low complexity
huawei CWE-200
5.3
2017-04-02 CVE-2016-8271 Information Exposure vulnerability in Huawei Espace IAD Firmware V300R001C07Spca00/V300R002C01/V300R002C01Spc100
Huawei eSpace IAD V300R002C01SPC100 and earlier versions have an information leak vulnerability; an attacker can check and download the fault information by accessing a special URL.
network
low complexity
huawei CWE-200
5.3
2017-04-02 CVE-2015-2246 Information Exposure vulnerability in Huawei P7-L10 Firmware V100R001C00B136
The MeWidget module on Huawei P7 smartphones with software P7-L10 V100R001C00B136 and earlier versions could lead to the disclosure of contact information.
local
low complexity
huawei CWE-200
3.3