Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2020-09-18 CVE-2020-5975 Information Exposure vulnerability in Nvidia Geforce NOW
NVIDIA GeForce NOW, versions prior to 2.0.23 on Windows and macOS, contains a vulnerability in the desktop application software that includes sensitive information as part of a URL, which may lead to information disclosure.
network
low complexity
nvidia CWE-200
7.5
2020-09-17 CVE-2020-14181 Information Exposure vulnerability in Atlassian Jira
Affected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Information Disclosure vulnerability in the /ViewUserHover.jspa endpoint.
network
low complexity
atlassian CWE-200
5.3
2020-09-09 CVE-2020-15790 Information Exposure vulnerability in Siemens Spectrum Power 4 4.70
A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8).
network
low complexity
siemens CWE-200
5.3
2020-09-04 CVE-2020-3537 Information Exposure vulnerability in Cisco Jabber
A vulnerability in Cisco Jabber for Windows software could allow an authenticated, remote attacker to gain access to sensitive information.
network
low complexity
cisco CWE-200
5.7
2020-08-27 CVE-2020-4172 Information Exposure vulnerability in IBM Security Guardium Insights 2.0.1
IBM Security Guardium Insights 2.0.1 stores sensitive information in URL parameters.
network
low complexity
ibm CWE-200
5.3
2020-08-26 CVE-2020-3520 Information Exposure vulnerability in Cisco Data Center Network Manager
A vulnerability in Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, local attacker to obtain confidential information from an affected device.
local
low complexity
cisco CWE-200
5.5
2020-08-19 CVE-2020-24381 Information Exposure vulnerability in Gunet Open Eclass Platform
GUnet Open eClass Platform (aka openeclass) before 3.11 might allow remote attackers to read students' submitted assessments because it does not ensure that the web server blocks directory listings, and the data directory is inside the web root by default.
network
low complexity
gunet CWE-200
7.5
2020-08-17 CVE-2020-1510 Information Exposure vulnerability in Microsoft Windows 10
An information disclosure vulnerability exists when the win32k component improperly provides kernel information.
local
low complexity
microsoft CWE-200
5.5
2020-08-17 CVE-2020-8232 Information Exposure vulnerability in UI Edgeswitch Firmware 1.7.1
An information disclosure vulnerability exists in EdgeMax EdgeSwitch firmware v1.9.0 that allowed read only users could obtain unauthorized information through SNMP community pages.
network
low complexity
ui CWE-200
6.5
2020-08-10 CVE-2020-15647 Information Exposure vulnerability in Mozilla Firefox
A Content Provider in Firefox for Android allowed local files accessible by the browser to be read by a remote webpage, leading to sensitive data disclosure, including cookies for other origins.
network
low complexity
mozilla CWE-200
7.4