Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2023-08-23 CVE-2022-3743 Information Exposure vulnerability in Lenovo products
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges under certain conditions the ability to enumerate Embedded Controller (EC) commands.
local
low complexity
lenovo CWE-200
4.4
2023-08-23 CVE-2022-3745 Information Exposure vulnerability in Lenovo products
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to view incoming and returned data from SMI.
local
low complexity
lenovo CWE-200
4.4
2023-08-10 CVE-2023-38245 Information Exposure vulnerability in Adobe products
Adobe Acrobat Reader versions 23.003.20244 (and earlier) and 20.005.30467 (and earlier) are affected by an Information Disclosure vulnerability.
local
low complexity
adobe CWE-200
5.5
2023-07-25 CVE-2023-34235 Information Exposure vulnerability in Strapi
Strapi is an open-source headless content management system.
network
low complexity
strapi CWE-200
7.5
2023-07-25 CVE-2023-34093 Information Exposure vulnerability in Strapi
Strapi is an open-source headless content management system.
network
low complexity
strapi CWE-200
7.1
2023-07-21 CVE-2023-3819 Information Exposure vulnerability in Pimcore
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository pimcore/pimcore prior to 10.6.4.
network
low complexity
pimcore CWE-200
6.5
2023-07-20 CVE-2023-32476 Information Exposure vulnerability in Dell Hybrid Client 2.0
Dell Hybrid Client version 2.0 contains a Sensitive Data Exposure vulnerability.
local
low complexity
dell CWE-200
5.5
2023-07-18 CVE-2021-4428 Information Exposure vulnerability in What3Words Autosuggest
A vulnerability has been found in what3words Autosuggest Plugin up to 4.0.0 on WordPress and classified as problematic.
network
low complexity
what3words CWE-200
7.5
2023-07-14 CVE-2023-34236 Information Exposure vulnerability in Weave Gitops Terraform Controller 0.15.0
Weave GitOps Terraform Controller (aka Weave TF-controller) is a controller for Flux to reconcile Terraform resources in a GitOps way.
network
low complexity
weave CWE-200
6.5
2023-07-08 CVE-2023-3553 Information Exposure vulnerability in Teampass
Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository nilsteampassnet/teampass prior to 3.0.10.
network
low complexity
teampass CWE-200
7.5