Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2020-02-03 CVE-2013-2674 Information Exposure vulnerability in Brother Mfc-9970Cdw Firmware 1.10
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling of HTTP referrer headers.
network
low complexity
brother CWE-200
7.5
2020-02-03 CVE-2013-2631 Information Exposure vulnerability in Tinywebgallery
TinyWebGallery (TWG) 1.8.9 and earlier contains a full path disclosure vulnerability which allows remote attackers to obtain sensitive information through the parameters "twg_browserx" and "twg_browsery" in the page image.php.
network
low complexity
tinywebgallery CWE-200
5.3
2020-02-03 CVE-2013-2624 Information Exposure vulnerability in Telaen Project Telaen
Telean before 1.3.1 contains a full path disclosure vulnerability which could allow remote attackers to obtain sensitive information through a specially crafted URL request.
network
low complexity
telaen-project CWE-200
5.3
2020-02-03 CVE-2014-8328 Information Exposure vulnerability in Dynamic Content Elements Project Dynamic Content Elements
The default configuration in the Dynamic Content Elements (dce) extension before 0.11.5 for TYPO3 allows remote attackers to obtain sensitive installation environment information by reading the update check request.
network
low complexity
dynamic-content-elements-project CWE-200
5.3
2020-01-31 CVE-2011-4088 Information Exposure vulnerability in multiple products
ABRT might allow attackers to obtain sensitive information from crash reports.
network
low complexity
abrt-project fedoraproject redhat CWE-200
7.5
2020-01-31 CVE-2019-19550 Information Exposure vulnerability in Senior Rubiweb 6.2.34.28/6.2.34.37
Remote Authentication Bypass in Senior Rubiweb 6.2.34.28 and 6.2.34.37 allows admin access to sensitive information of affected users using vulnerable versions.
network
low complexity
senior CWE-200
7.5
2020-01-30 CVE-2013-4187 Information Exposure vulnerability in Flippy Project Flippy
The Flippy module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to nodes, which allows remote authenticated users with the permission to access content to read a link or alias to a restricted node.
network
low complexity
flippy-project CWE-200
6.5
2020-01-30 CVE-2013-1631 Information Exposure vulnerability in Veraxsystems Network Management System
Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action
network
low complexity
veraxsystems CWE-200
5.3
2020-01-30 CVE-2013-0291 Information Exposure vulnerability in Imagely Nextgen Gallery 1.9.10/1.9.11
NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability
network
low complexity
imagely CWE-200
7.5
2020-01-29 CVE-2020-2103 Information Exposure vulnerability in Jenkins
Jenkins 2.218 and earlier, LTS 2.204.1 and earlier exposed session identifiers on a user's detail object in the whoAmI diagnostic page.
network
low complexity
jenkins CWE-200
5.4