Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2023-09-05 CVE-2023-32271 Information Exposure vulnerability in Openautomationsoftware OAS Platform 18.00.0072
An information disclosure vulnerability exists in the OAS Engine configuration management functionality of Open Automation Software OAS Platform v18.00.0072.
network
low complexity
openautomationsoftware CWE-200
6.5
2023-09-01 CVE-2023-4714 Information Exposure vulnerability in Playtube 3.0.1
A vulnerability was found in PlayTube 3.0.1 and classified as problematic.
network
low complexity
playtube CWE-200
7.5
2023-08-24 CVE-2023-39519 Information Exposure vulnerability in Fit2Cloud Cloudexplorer Lite
Cloud Explorer Lite is an open source cloud management platform.
network
low complexity
fit2cloud CWE-200
4.9
2023-08-23 CVE-2022-3743 Information Exposure vulnerability in Lenovo products
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges under certain conditions the ability to enumerate Embedded Controller (EC) commands.
local
low complexity
lenovo CWE-200
4.4
2023-08-23 CVE-2022-3745 Information Exposure vulnerability in Lenovo products
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to view incoming and returned data from SMI.
local
low complexity
lenovo CWE-200
4.4
2023-08-10 CVE-2023-38245 Information Exposure vulnerability in Adobe products
Adobe Acrobat Reader versions 23.003.20244 (and earlier) and 20.005.30467 (and earlier) are affected by an Information Disclosure vulnerability.
local
low complexity
adobe CWE-200
5.5
2023-08-08 CVE-2023-37484 Information Exposure vulnerability in SAP Powerdesigner 16.7
SAP PowerDesigner - version 16.7, queries all password hashes in the backend database and compares it with the user provided one during login attempt, which might allow an attacker to access password hashes from the client's memory.
network
low complexity
sap CWE-200
5.3
2023-08-08 CVE-2023-37487 Information Exposure vulnerability in SAP Business ONE 10.0
SAP Business One (Service Layer) - version 10.0, allows an authenticated attacker with deep knowledge perform certain operation to access unintended data over the network which could lead to high impact on confidentiality with no impact on integrity and availability of the application
network
high complexity
sap CWE-200
5.3
2023-08-08 CVE-2023-39436 Information Exposure vulnerability in SAP Supplier Relationship Management
SAP Supplier Relationship Management -versions 600, 602, 603, 604, 605, 606, 616, 617, allows an unauthorized attacker to discover information relating to SRM within Vendor Master Data for Business Partners replication functionality.This information could be used to allow the attacker to specialize their attacks against SRM.
network
low complexity
sap CWE-200
5.8
2023-08-08 CVE-2023-39440 Information Exposure vulnerability in SAP Businessobjects Business Intelligence 420
In SAP BusinessObjects Business Intelligence - version 420, If a user logs in to a particular program, under certain specific conditions memory might not be cleared up properly, due to which attacker might be able to get access to user credentials.
local
high complexity
sap CWE-200
4.4