Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-06-27 CVE-2018-6168 Information Exposure vulnerability in Google Chrome
Information leak in media engine in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
network
low complexity
google CWE-200
6.5
2019-06-27 CVE-2018-6159 Information Exposure vulnerability in Google Chrome
Insufficient policy enforcement in ServiceWorker in Google Chrome prior to 68.0.3440.75 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
network
low complexity
google CWE-200
6.5
2019-06-27 CVE-2018-6150 Information Exposure vulnerability in Google Chrome
Incorrect handling of CORS in ServiceWorker in Google Chrome prior to 66.0.3359.117 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
network
low complexity
google CWE-200
6.5
2019-06-27 CVE-2018-6134 Information Exposure vulnerability in Google Chrome
Information leak in Blink in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to bypass no-referrer policy via a crafted HTML page.
network
low complexity
google CWE-200
6.5
2019-06-27 CVE-2018-20073 Information Exposure vulnerability in Google Chrome
Use of extended attributes in downloads in Google Chrome prior to 72.0.3626.81 allowed a local attacker to read download URLs via the filesystem.
local
low complexity
google CWE-200
5.5
2019-06-27 CVE-2018-1734 Information Exposure vulnerability in IBM products
IBM Rational Collaborative Lifecycle Management 6.0 through 6.0.6.1 discloses sensitive information in error messages that may be used by a malicious user to orchestrate further attacks.
network
low complexity
ibm CWE-200
4.3
2019-06-25 CVE-2018-2013 Information Exposure vulnerability in IBM API Connect
IBM API Connect 2018.1 through 2018.4.1.5 could disclose sensitive information to an unauthorized user that could aid in further attacks against the system.
network
low complexity
ibm CWE-200
5.3
2019-06-25 CVE-2018-2011 Information Exposure vulnerability in IBM API Connect
IBM API Connect 2018.1 through 2018.4.1.5 could allow an attacker to obtain sensitive information from a specially crafted HTTP request that could aid an attacker in further attacks against the system.
network
low complexity
ibm CWE-200
5.3
2019-06-24 CVE-2014-9699 Information Exposure vulnerability in Makerbot Replicator 5TH Generation Firmware
The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled.
network
low complexity
makerbot CWE-200
7.5
2019-06-24 CVE-2019-11648 Information Exposure vulnerability in Netiq Self Service Password Reset
An information leakage exists in Micro Focus NetIQ Self Service Password Reset Software all versions prior to version 4.4.
network
low complexity
netiq CWE-200
7.5