Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-11-20 CVE-2013-1817 Information Exposure vulnerability in multiple products
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive information.
network
low complexity
mediawiki debian redhat fedoraproject CWE-200
7.5
2019-11-19 CVE-2019-10083 Information Exposure vulnerability in Apache Nifi
When updating a Process Group via the API in NiFi versions 1.3.0 to 1.9.2, the response to the request includes all of its contents (at the top most level, not recursively).
network
low complexity
apache CWE-200
5.3
2019-11-19 CVE-2012-0843 Information Exposure vulnerability in multiple products
uzbl: Information disclosure via world-readable cookies storage file
local
low complexity
uzbl debian CWE-200
5.5
2019-11-19 CVE-2011-4919 Information Exposure vulnerability in Mpack Project Mpack 1.6
mpack 1.6 has information disclosure via eavesdropping on mails sent by other users
network
low complexity
mpack-project CWE-200
7.5
2019-11-19 CVE-2012-0842 Information Exposure vulnerability in multiple products
surf: cookie jar has read access from other local user
local
low complexity
suckless debian CWE-200
5.5
2019-11-17 CVE-2019-19022 Information Exposure vulnerability in Iterm2
iTerm2 through 3.3.6 has potentially insufficient documentation about the presence of search history in com.googlecode.iterm2.plist, which might allow remote attackers to obtain sensitive information, as demonstrated by searching for the NoSyncSearchHistory string in .plist files within public Git repositories.
network
low complexity
iterm2 CWE-200
7.5
2019-11-15 CVE-2013-7089 Information Exposure vulnerability in multiple products
ClamAV before 0.97.7: dbg_printhex possible information leak
network
low complexity
clamav debian fedoraproject CWE-200
7.5
2019-11-15 CVE-2019-18987 Information Exposure vulnerability in Mediawiki Abusefilter
An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki.
network
low complexity
mediawiki CWE-200
5.3
2019-11-14 CVE-2013-3070 Information Exposure vulnerability in Netgear Wndr4700 Firmware 1.0.0.34
An Information Disclosure vulnerability exists in Netgear WNDR4700 running firmware 1.0.0.34 in the management web interface, which discloses the PSK of the wireless LAN.
network
low complexity
netgear CWE-200
7.5
2019-11-14 CVE-2012-1169 Information Exposure vulnerability in multiple products
Moodle before 2.2.2 has Personal information disclosure, when administrative setting users name display is set to first name only full names are shown in page breadcrumbs.
network
low complexity
moodle fedoraproject CWE-200
5.3