Vulnerabilities > Information Exposure

DATE CVE VULNERABILITY TITLE RISK
2019-05-10 CVE-2018-1990 Information Exposure vulnerability in IBM Cloud APP Management 2018.2.0/2018.4.0/2018.4.1
IBM Cloud App Management V2018.2.0, V2018.4.0, and V2018.4.1 could allow an attacker to obtain sensitive configuration information using a specially crafted HTTP request.
network
low complexity
ibm CWE-200
5.3
2019-05-09 CVE-2016-1600 Information Exposure vulnerability in Microfocus Identity Manager
The ServiceNow driver in NetIQ Identity Manager versions prior to 4.6 are susceptible to an information disclosure vulnerability.
network
low complexity
microfocus CWE-200
7.5
2019-05-07 CVE-2018-2008 Information Exposure vulnerability in IBM Tririga Application Platform 3.5.3.0/3.6.0.0
IBM TRIRIGA Application Platform 3.5.3 and 3.6.0 could disclose sensitive information to an authenticated user that could aid in further attacks against the system.
network
low complexity
ibm CWE-200
4.3
2019-05-07 CVE-2018-19456 Information Exposure vulnerability in multiple products
The WP Backup+ (aka WPbackupplus) plugin through 2018-11-22 for WordPress allows remote attackers to obtain sensitive information from server folders and files, as demonstrated by download.sql.
network
low complexity
wplaunchpad opensuse CWE-200
7.5
2019-05-07 CVE-2018-13991 Information Exposure vulnerability in Phoenixcontact products
The WebUI of PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx versions 1.0 to 1.34 leaks private information in firmware images.
network
low complexity
phoenixcontact CWE-200
5.3
2019-05-06 CVE-2018-18977 Information Exposure vulnerability in Ascensia Contour Diabetes
An issue was discovered in the Ascensia Contour NEXT ONE application for Android before 2019-01-15.
network
low complexity
ascensia CWE-200
7.5
2019-05-06 CVE-2018-18975 Information Exposure vulnerability in Ascensia Contour Diabetes
An issue was discovered in the Ascensia Contour NEXT ONE app for iOS before 2019-01-15.
network
low complexity
ascensia CWE-200
7.5
2019-05-06 CVE-2018-4071 Information Exposure vulnerability in Sierrawireless Airlink Es450 Firmware 4.9.3
An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3.
network
low complexity
sierrawireless CWE-200
8.8
2019-05-06 CVE-2018-4070 Information Exposure vulnerability in Sierrawireless Airlink Es450 Firmware 4.9.3
An exploitable Information Disclosure vulnerability exists in the ACEManager EmbeddedAceGet_Task.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3.
network
low complexity
sierrawireless CWE-200
8.8
2019-05-06 CVE-2018-4067 Information Exposure vulnerability in Sierrawireless Airlink Es450 Firmware 4.9.3
An exploitable information disclosure vulnerability exists in the ACEManager template_load.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3.
network
low complexity
sierrawireless CWE-200
6.5