Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-10-11 CVE-2015-9486 Information Exposure vulnerability in Axioma Premium Responsive Project Axioma Premium Responsive 20150515
The ThemeMakers Axioma Premium Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login, user_pass, and user_email values) via a direct request for the wp-content/uploads/tmm_db_migrate/wp_users.dat URI.
7.5
2019-10-11 CVE-2015-9485 Information Exposure vulnerability in Accio Responsive Onepage Parallax Site Template Project Accio Responsive Onepage Parallax Site Template 20150515
The ThemeMakers Accio Responsive Parallax One Page Site Template component through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login, user_pass, and user_email values) via a direct request for the wp-content/uploads/tmm_db_migrate/wp_users.dat URI.
7.5
2019-10-11 CVE-2015-9484 Information Exposure vulnerability in Accio ONE Page Parallax Responsive Theme Project Accio ONE Page Parallax Responsive Theme 20150515
The ThemeMakers Accio One Page Parallax Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login, user_pass, and user_email values) via a direct request for the wp-content/uploads/tmm_db_migrate/wp_users.dat URI.
7.5
2019-10-11 CVE-2015-9483 Information Exposure vulnerability in Invento / Architecture Building Agency Template Project Invento / Architecture Building Agency Template 20150515
The ThemeMakers Invento Responsive Gallery/Architecture Template component through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login, user_pass, and user_email values) via a direct request for the wp-content/uploads/tmm_db_migrate/wp_users.dat URI.
7.5
2019-10-11 CVE-2015-9482 Information Exposure vulnerability in CAR Dealer / Auto Dealer Responsive Project CAR Dealer / Auto Dealer Responsive 20150515
The ThemeMakers Car Dealer / Auto Dealer Responsive theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login, user_pass, and user_email values) via a direct request for the wp-content/uploads/tmm_db_migrate/wp_users.dat URI.
7.5
2019-10-11 CVE-2015-9481 Information Exposure vulnerability in Diplomat | Political Project Diplomat | Political 20150515
The ThemeMakers Diplomat | Political theme through 2015-05-15 for WordPress allows remote attackers to obtain sensitive information (such as user_login, user_pass, and user_email values) via a direct request for the wp-content/uploads/tmm_db_migrate/wp_users.dat URI.
network
low complexity
diplomat-political-project CWE-200
7.5
2019-10-10 CVE-2019-1369 Information Exposure vulnerability in Microsoft Open Enclave Software Development KIT
An information disclosure vulnerability exists when affected Open Enclave SDK versions improperly handle objects in memory, aka 'Open Enclave SDK Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-10-10 CVE-2019-1363 Information Exposure vulnerability in Microsoft Windows 7 and Windows Server 2008
An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory, allowing an attacker to retrieve information from a targeted system, aka 'Windows GDI Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5
2019-10-10 CVE-2019-1356 Information Exposure vulnerability in Microsoft Edge
An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory, aka 'Microsoft Edge based on Edge HTML Information Disclosure Vulnerability'.
network
low complexity
microsoft CWE-200
6.5
2019-10-10 CVE-2019-1337 Information Exposure vulnerability in Microsoft products
An information disclosure vulnerability exists when Windows Update Client fails to properly handle objects in memory, aka 'Windows Update Client Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-200
5.5