Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2021-06-24 CVE-2021-32711 Information Exposure vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
low complexity
shopware CWE-200
7.5
2021-06-23 CVE-2021-29086 Information Exposure vulnerability in Synology products
Exposure of sensitive information to an unauthorized actor vulnerability in webapi component in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to obtain sensitive information via unspecified vectors.
network
low complexity
synology CWE-200
7.5
2021-06-21 CVE-2010-1432 Information Exposure vulnerability in Joomla Joomla!
Joomla! Core is prone to an information disclosure vulnerability.
network
low complexity
joomla CWE-200
7.5
2021-06-11 CVE-2020-12987 Information Exposure vulnerability in AMD Radeon PRO Software and Radeon Software
A heap information leak/kernel pool address disclosure vulnerability in the AMD Graphics Driver for Windows 10 may lead to KASLR bypass.
local
low complexity
amd CWE-200
5.5
2021-06-11 CVE-2021-22749 Information Exposure vulnerability in Schneider-Electric Modicon X80 Bmxnor0200H RTU Firmware Sv1.6/Sv1.7
A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon X80 BMXNOR0200H RTU SV1.70 IR22 and prior that could cause information leak concerning the current RTU configuration including communication parameters dedicated to telemetry, when a specially crafted HTTP request is sent to the web server of the module.
network
low complexity
schneider-electric CWE-200
5.3
2021-06-11 CVE-2021-22905 Information Exposure vulnerability in Nextcloud
Nextcloud Android App (com.nextcloud.client) before v3.16.0 is vulnerable to information disclosure due to searches for sharees being performed by default on the lookup server instead of only using the local Nextcloud server unless a global search has been explicitly chosen by the user.
network
low complexity
nextcloud CWE-200
6.5
2021-06-11 CVE-2021-22912 Information Exposure vulnerability in Nextcloud
Nextcloud iOS before 3.4.2 suffers from an information disclosure vulnerability when searches for sharees utilize the lookup server by default instead of only on the local Nextcloud server unless a global search has been explicitly chosen by the user.
network
low complexity
nextcloud CWE-200
6.5
2021-06-11 CVE-2021-22913 Information Exposure vulnerability in Nextcloud Deck
Nextcloud Deck before 1.2.7, 1.4.1 suffers from an information disclosure vulnerability when searches for sharees utilize the lookup server by default instead of only the local Nextcloud server unless a global search has been explicitly chosen by the user.
network
low complexity
nextcloud CWE-200
6.5
2021-06-11 CVE-2021-28805 Information Exposure vulnerability in Qnap QSS 1.0.2/1.0.3
Inclusion of sensitive information in the source code has been reported to affect certain QNAP switches running QSS.
local
low complexity
qnap CWE-200
5.5
2021-06-07 CVE-2021-20259 Information Exposure vulnerability in Theforeman Foremanfogproxmox
A flaw was found in the Foreman project.
local
low complexity
theforeman CWE-200
7.8