Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-06-21 CVE-2018-15665 Information Exposure vulnerability in Cloudera Data Science Workbench
An issue was discovered in Cloudera Data Science Workbench (CDSW) 1.2.x through 1.4.0.
network
low complexity
cloudera CWE-200
5.3
2019-06-21 CVE-2016-7404 Information Exposure vulnerability in Openstack Magnum
OpenStack Magnum passes OpenStack credentials into the Heat templates creating its instances.
network
low complexity
openstack CWE-200
critical
9.8
2019-06-19 CVE-2019-11233 Information Exposure vulnerability in EIC Biyan 1.57/2.8
EXCELLENT INFOTEK BiYan v1.57 ~ v2.8 allows an attacker to leak user information without being authenticated, by sending a LOGIN_ID element to the auth/main/asp/check_user_login_info.aspx URI, and then reading the response, as demonstrated by the KW_EMAIL or KW_TEL field.
network
low complexity
eic CWE-200
7.5
2019-06-19 CVE-2017-1107 Information Exposure vulnerability in IBM Marketing Platform
IBM Marketing Platform 9.1.0, 9.1.2, 10.0, and 10.1 exposes sensitive information in the headers that could be used by an authenticated attacker in further attacks against the system.
network
low complexity
ibm CWE-200
4.3
2019-06-18 CVE-2017-8337 Information Exposure vulnerability in Securifi products
An issue was discovered on Securifi Almond, Almond+, and Almond 2015 devices with firmware AL-R096.
network
low complexity
securifi CWE-200
8.8
2019-06-18 CVE-2018-18839 Information Exposure vulnerability in My-Netdata Netdata 1.10.0
An issue was discovered in Netdata 1.10.0.
network
low complexity
my-netdata CWE-200
5.3
2019-06-17 CVE-2017-10719 Information Exposure vulnerability in Ishekar Endoscope Camera Firmware
Recently it was discovered as a part of the research on IoT devices in the most recent firmware for Shekar Endoscope that the device has default Wi-Fi credentials that are exactly the same for every device.
network
low complexity
ishekar CWE-200
6.5
2019-06-17 CVE-2019-5017 Information Exposure vulnerability in multiple products
An exploitable information disclosure vulnerability exists in the KCodes NetUSB.ko kernel module that enables the ReadySHARE Printer functionality of at least two NETGEAR Nighthawk Routers and potentially several other vendors/products.
network
low complexity
netgear kcodes CWE-200
5.3
2019-06-17 CVE-2019-5016 Information Exposure vulnerability in multiple products
An exploitable arbitrary memory read vulnerability exists in the KCodes NetUSB.ko kernel module which enables the ReadySHARE Printer functionality of at least two NETGEAR Nighthawk Routers and potentially several other vendors/products.
network
low complexity
netgear kcodes CWE-200
critical
9.1
2019-06-17 CVE-2019-11407 Information Exposure vulnerability in Fusionpbx 4.4.3
app/operator_panel/index_inc.php in the Operator Panel module in FusionPBX 4.4.3 suffers from an information disclosure vulnerability due to excessive debug information, which allows authenticated administrative attackers to obtain credentials and other sensitive information.
network
low complexity
fusionpbx CWE-200
7.2