Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2020-03-24 CVE-2019-20615 Information Exposure vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software.
low complexity
google CWE-200
4.6
2020-03-24 CVE-2020-4309 Information Exposure vulnerability in IBM Content Navigator 3.0.0
IBM Content Navigator 3.0CD could disclose sensitive information to an unauthenticated user which could be used to aid in further attacks against the system.
network
low complexity
ibm CWE-200
5.3
2020-03-23 CVE-2020-10871 Information Exposure vulnerability in Openwrt Luci Git20.049.11521Bebfe20/Git20.078.229020Ed0D42
In OpenWrt LuCI git-20.x, remote unauthenticated attackers can retrieve the list of installed packages and services.
network
low complexity
openwrt CWE-200
5.3
2020-03-20 CVE-2018-20333 Information Exposure vulnerability in Asus Asuswrt 3.0.0.4.384.20308
An issue was discovered in ASUSWRT 3.0.0.4.384.20308.
network
low complexity
asus CWE-200
7.5
2020-03-18 CVE-2019-19677 Information Exposure vulnerability in Arxes-Tolina 3.0.0
arxes-tolina 3.0.0 allows User Enumeration.
network
low complexity
arxes-tolina CWE-200
4.3
2020-03-13 CVE-2020-10090 Information Exposure vulnerability in Gitlab
GitLab 11.7 through 12.8.1 allows Information Disclosure.
network
low complexity
gitlab CWE-200
5.3
2020-03-13 CVE-2020-10195 Information Exposure vulnerability in Sygnoos Popup-Builder
The popup-builder plugin before 3.64.1 for WordPress allows information disclosure and settings modification, leading to in-scope privilege escalation via admin-post actions to com/classes/Actions.php.
network
low complexity
sygnoos CWE-200
6.3
2020-03-11 CVE-2019-9103 Information Exposure vulnerability in Moxa products
An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1.
network
low complexity
moxa CWE-200
5.3
2020-03-10 CVE-2020-6178 Information Exposure vulnerability in SAP Enable NOW 10/1902/1908
SAP Enable Now, before version 1911, sends the Session ID cookie value in URL.
network
low complexity
sap CWE-200
5.4
2020-03-10 CVE-2020-0062 Information Exposure vulnerability in Google Android
In Euicc, there is a possible information disclosure due to an included test Certificate.
network
low complexity
google CWE-200
7.5