Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2017-01-12 CVE-2016-6774 Information Exposure vulnerability in Google Android
An information disclosure vulnerability in Package Manager could enable a local malicious application to bypass operating system protections that isolate application data from other applications.
local
high complexity
google CWE-200
4.7
2017-01-12 CVE-2016-6773 Information Exposure vulnerability in Google Android 6.0/6.0.1/7.0
An information disclosure vulnerability in the ih264d decoder in Mediaserver could enable a local malicious application to access data outside of its permission levels.
local
low complexity
google CWE-200
5.5
2017-01-12 CVE-2016-6757 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in Qualcomm components including the camera driver and video driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-01-12 CVE-2016-6756 Information Exposure vulnerability in Linux Kernel 3.10/3.18
An information disclosure vulnerability in Qualcomm components including the camera driver and video driver could enable a local malicious application to access data outside of its permission levels.
local
high complexity
linux CWE-200
4.7
2017-01-11 CVE-2016-6820 Information Exposure vulnerability in Netapp Metrocluster Tiebreaker 1.1
MetroCluster Tiebreaker for clustered Data ONTAP in versions before 1.2 discloses sensitive information in cleartext which may be viewed by an unauthenticated user.
network
low complexity
netapp CWE-200
7.5
2017-01-11 CVE-2016-4806 Information Exposure vulnerability in Web2Py
Web2py versions 2.14.5 and below was affected by Local File Inclusion vulnerability, which allows a malicious intended user to read/access web server sensitive files.
network
low complexity
web2py CWE-200
7.5
2017-01-11 CVE-2015-8020 Information Exposure vulnerability in Netapp Clustered Data Ontap 8.0/8.3.1/8.3.2
Clustered Data ONTAP versions 8.0, 8.3.1, and 8.3.2 contain a default privileged account which under certain conditions can be used for unauthorized information disclosure.
network
high complexity
netapp CWE-200
3.7
2017-01-06 CVE-2016-4306 Information Exposure vulnerability in Kaspersky Total Security 16.0.0.614
Multiple information leaks exist in various IOCTL handlers of the Kaspersky Internet Security KLDISK driver.
local
low complexity
kaspersky CWE-200
5.5
2017-01-06 CVE-2016-1550 Information Exposure vulnerability in NTP 4.2.8
An exploitable vulnerability exists in the message authentication functionality of libntp in ntp 4.2.8p4 and NTPSec a5fb34b9cc89b92a8fef2f459004865c93bb7f92.
network
low complexity
ntp CWE-200
5.3
2016-12-31 CVE-2016-6859 Information Exposure vulnerability in SAP Hybris
Hybris Management Console (HMC) in SAP Hybris before 6.0 allows remote attackers to obtain sensitive information by triggering an error and then reading a Java stack trace.
network
low complexity
sap CWE-200
4.3