Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2017-02-20 CVE-2016-7579 Information Exposure vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
high complexity
apple CWE-200
5.9
2017-02-20 CVE-2016-7577 Information Exposure vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
high complexity
apple CWE-200
3.7
2017-02-20 CVE-2016-4680 Information Exposure vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-200
5.5
2017-02-20 CVE-2016-4665 Information Exposure vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-200
3.3
2017-02-20 CVE-2016-4664 Information Exposure vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-200
3.3
2017-02-20 CVE-2016-4660 Information Exposure vulnerability in Apple products
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-200
7.1
2017-02-20 CVE-2016-4613 Information Exposure vulnerability in Apple products
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-200
6.5
2017-02-17 CVE-2016-6190 Information Exposure vulnerability in Inverse-Inc Sogo
SOGo before 2.3.12 and 3.x before 3.1.1 does not restrict access to the UID and DTSTAMP attributes, which allows remote authenticated users to obtain sensitive information about appointments with the "View the Date & Time" restriction, as demonstrated by correlating UIDs and DTSTAMPs between all users.
network
low complexity
inverse-inc CWE-200
4.3
2017-02-17 CVE-2017-5017 Information Exposure vulnerability in Google Chrome
Interactions with the OS in Google Chrome prior to 56.0.2924.76 for Mac insufficiently cleared video memory, which allowed a remote attacker to possibly extract image fragments on systems with GeForce 8600M graphics chips via a crafted HTML page.
network
low complexity
google CWE-200
4.3
2017-02-17 CVE-2017-5011 Information Exposure vulnerability in Google Chrome
Google Chrome prior to 56.0.2924.76 for Windows insufficiently sanitized DevTools URLs, which allowed a remote attacker who convinced a user to install a malicious extension to read filesystem contents via a crafted HTML page.
network
low complexity
google CWE-200
6.5