Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-08-22 CVE-2014-10388 Information Exposure vulnerability in Wpsupportplus WP Support Plus Responsive Ticket System
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has full path disclosure.
network
low complexity
wpsupportplus CWE-200
5.3
2019-08-21 CVE-2019-6177 Information Exposure vulnerability in Lenovo Solution Center 03.12.003
A vulnerability reported in Lenovo Solution Center version 03.12.003, which is no longer supported, could allow log files to be written to non-standard locations, potentially leading to privilege escalation.
network
low complexity
lenovo CWE-200
critical
9.8
2019-08-21 CVE-2019-15045 Information Exposure vulnerability in Zohocorp Manageengine Servicedesk Plus
AjaxDomainServlet in Zoho ManageEngine ServiceDesk Plus 10 allows User Enumeration.
network
low complexity
zohocorp CWE-200
5.3
2019-08-21 CVE-2019-12746 Information Exposure vulnerability in multiple products
An issue was discovered in Open Ticket Request System (OTRS) Community Edition 5.0.x through 5.0.36 and 6.0.x through 6.0.19.
network
low complexity
otrs debian CWE-200
6.5
2019-08-20 CVE-2019-4437 Information Exposure vulnerability in IBM API Connect
IBM API Connect 2018.1 through 2018.4.1.6 may inadvertently leak sensitive details about internal servers and network via API swagger.
network
low complexity
ibm CWE-200
5.3
2019-08-20 CVE-2018-18056 Information Exposure vulnerability in TI Tm4C123 Firmware and Tm4C129 Firmware
An issue was discovered in the Texas Instruments (TI) TM4C, MSP432E and MSP432P microcontroller series.
low complexity
ti CWE-200
4.6
2019-08-19 CVE-2017-18550 Information Exposure vulnerability in Linux Kernel
An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13.
local
low complexity
linux CWE-200
5.5
2019-08-19 CVE-2017-18549 Information Exposure vulnerability in Linux Kernel
An issue was discovered in drivers/scsi/aacraid/commctrl.c in the Linux kernel before 4.13.
local
low complexity
linux CWE-200
5.5
2019-08-15 CVE-2018-14669 Information Exposure vulnerability in Yandex Clickhouse
ClickHouse MySQL client before versions 1.1.54390 had "LOAD DATA LOCAL INFILE" functionality enabled that allowed a malicious MySQL database read arbitrary files from the connected ClickHouse server.
network
low complexity
yandex CWE-200
7.5
2019-08-15 CVE-2019-14800 Information Exposure vulnerability in Foliovision FV Flowplayer Video Player
The FV Flowplayer Video Player plugin before 7.3.15.727 for WordPress allows guests to obtain the email subscription list in CSV format via the wp-admin/admin-post.php?page=fvplayer&fv-email-export=1 URI.
network
low complexity
foliovision CWE-200
5.3