Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2020-02-06 CVE-2013-3564 Information Exposure vulnerability in Videolan VLC Media Player
The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'dir' command or issue other commands without authenticating.
network
low complexity
videolan CWE-200
5.3
2020-02-06 CVE-2013-2683 Information Exposure vulnerability in Cisco Linksys E4200 Firmware 1.0.05
Cisco Linksys E4200 1.0.05 Build 7 devices contain an Information Disclosure Vulnerability which allows remote attackers to obtain private IP addresses and other sensitive information.
network
low complexity
cisco CWE-200
5.3
2020-02-06 CVE-2012-6341 Information Exposure vulnerability in Netgear Wgr614V7 Firmware and Wgr614V9 Firmware
An Information Disclosure vulnerability exists in the my config file in NEtGEAR WGR614 v7 and v9, which could let a malicious user recover all previously used passwords on the device, for both the control panel and WEP/WPA/WPA2, in plaintext.
network
low complexity
netgear CWE-200
6.5
2020-02-06 CVE-2013-4166 Information Exposure vulnerability in multiple products
The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and earlier and Evolution Data Server 3.9.5 and earlier does not properly select the GPG key to use for email encryption, which might cause the email to be encrypted with the wrong key and allow remote attackers to obtain sensitive information.
network
low complexity
gnome redhat CWE-200
7.5
2020-02-06 CVE-2010-3917 Information Exposure vulnerability in Google Chrome
Google Chrome before 3.0 does not properly handle XML documents, which allows remote attackers to obtain sensitive information via a crafted web site.
network
low complexity
google CWE-200
6.5
2020-02-04 CVE-2015-2802 Information Exposure vulnerability in HP products
An Information Disclosure vulnerability exists in HP SiteScope 11.2 and 11.3 on Windows, Linux and Solaris, HP Asset Manager 9.30 through 9.32, 9.40 through 9.41, 9.50, and Asset Manager Cloudsystem Chargeback 9.40, which could let a remote malicious user obtain sensitive information.
network
low complexity
hp CWE-200
7.5
2020-02-04 CVE-2019-4562 Information Exposure vulnerability in IBM Security Directory Server
IBM Security Directory Server 6.4.0 stores sensitive information in URLs.
network
low complexity
ibm CWE-200
5.3
2020-02-04 CVE-2013-2676 Information Exposure vulnerability in Brother Mfc-9970Cdw Firmware 1.10
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresses and other sensitive information.
network
low complexity
brother CWE-200
7.5
2020-02-04 CVE-2011-4937 Information Exposure vulnerability in Joomla Joomla!
Joomla! 1.7.1 has core information disclosure due to inadequate error checking.
network
low complexity
joomla CWE-200
7.5
2020-02-03 CVE-2016-4676 Information Exposure vulnerability in Apple mac OS X and Safari
A Cross-origin vulnerability exists in WebKit in Apple Safari before 10.0.1 when processing location attributes, which could let a remote malicious user obtain sensitive information.
network
low complexity
apple CWE-200
7.5