Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-11-09 CVE-2019-4412 Information Exposure vulnerability in IBM Cognos Controller
IBM Cognos Controller stores sensitive information in URL parameters.
network
low complexity
ibm CWE-200
5.3
2019-11-08 CVE-2019-13557 Information Exposure vulnerability in Philips Tasy EMR and Tasy Webportal
In Tasy EMR, Tasy WebPortal Versions 3.02.1757 and prior, there is an information exposure vulnerability which may allow a remote attacker to access system and configuration information.
network
low complexity
philips CWE-200
5.3
2019-11-08 CVE-2008-5083 Information Exposure vulnerability in Redhat Jboss Operations Network 2.1.0/2.1.2
In JON 2.1.x before 2.1.2 SP1, users can obtain unauthorized security information about private resources managed by JBoss ON.
network
low complexity
redhat CWE-200
6.5
2019-11-07 CVE-2019-3422 Information Exposure vulnerability in ZTE Mf910S Firmware
The Sec Consult Security Lab reported an information disclosure vulnerability in MF910S product to ZTE PSIRT in October 2019.
local
low complexity
zte CWE-200
6.2
2019-11-06 CVE-2009-5045 Information Exposure vulnerability in multiple products
Dump Servlet information leak in jetty before 6.1.22.
network
low complexity
eclipse debian CWE-200
7.5
2019-11-06 CVE-2011-4901 Information Exposure vulnerability in Typo3
TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to extract arbitrary information from the TYPO3 database.
network
low complexity
typo3 CWE-200
6.5
2019-11-06 CVE-2011-4900 Information Exposure vulnerability in multiple products
TYPO3 before 4.5.4 allows Information Disclosure in the backend.
network
low complexity
typo3 debian CWE-200
6.5
2019-11-06 CVE-2011-4627 Information Exposure vulnerability in Typo3
TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows Information Disclosure on the backend.
network
low complexity
typo3 CWE-200
6.5
2019-11-05 CVE-2010-3673 Information Exposure vulnerability in Typo3
TYPO3 before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows information disclosure in the mail header of the HTML mailing API.
network
low complexity
typo3 CWE-200
5.3
2019-11-05 CVE-2016-1000002 Information Exposure vulnerability in multiple products
gdm3 3.14.2 and possibly later has an information leak before screen lock
2.4