Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2021-02-22 CVE-2020-11281 Information Exposure vulnerability in Qualcomm products
Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to information disclosure.
network
low complexity
qualcomm CWE-200
7.5
2021-02-22 CVE-2020-35681 Information Exposure vulnerability in Djangoproject Channels 3.0.0/3.0.1/3.0.2
Django Channels 3.x before 3.0.3 allows remote attackers to obtain sensitive information from a different request scope.
network
high complexity
djangoproject CWE-200
7.4
2021-02-19 CVE-2021-21512 Information Exposure vulnerability in Dell EMC Powerprotect Cyber Recovery 19.7.0.1
Dell EMC PowerProtect Cyber Recovery, version 19.7.0.1, contains an Information Disclosure vulnerability.
local
low complexity
dell CWE-200
6.0
2021-02-16 CVE-2020-35568 Information Exposure vulnerability in multiple products
An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through v2.11.2.
network
low complexity
mbconnectline helmholz CWE-200
4.3
2021-02-11 CVE-2021-21301 Information Exposure vulnerability in Wire
Wire is an open-source collaboration platform.
network
low complexity
wire CWE-200
4.3
2021-02-08 CVE-2021-21435 Information Exposure vulnerability in Otrs
Article Bcc fields and agent personal information are shown when customer prints the ticket (PDF) via external interface.
network
low complexity
otrs CWE-200
6.5
2021-02-08 CVE-2020-1779 Information Exposure vulnerability in Otrs Ticket Forms
When dynamic templates are used (OTRSTicketForms), admin can use OTRS tags which are not masked properly and can reveal sensitive information.
network
low complexity
otrs CWE-200
4.9
2021-02-04 CVE-2020-4640 Information Exposure vulnerability in IBM API Connect
Certain IBM API Connect 10.0.0.0 through 10.0.1.0 and 2018.4.1.0 through 2018.4.1.13 configurations can result in sensitive information in the URL fragment identifiers.
low complexity
ibm CWE-200
4.1
2021-02-02 CVE-2020-14192 Information Exposure vulnerability in Atlassian Crucible
Affected versions of Atlassian Fisheye and Crucible allow remote attackers to view a product's SEN via an Information Disclosure vulnerability in the x-asen response header from Atlassian Analytics.
network
low complexity
atlassian CWE-200
4.3
2021-01-28 CVE-2021-26067 Information Exposure vulnerability in Atlassian Bamboo
Affected versions of Atlassian Bamboo allow an unauthenticated remote attacker to view a stack trace that may reveal the path for the home directory in disk and if certain files exists on the tmp directory, via a Sensitive Data Exposure vulnerability in the /chart endpoint.
network
low complexity
atlassian CWE-200
5.3