Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2025-05-28 CVE-2025-25025 IBM Security Guardium 12.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
CWE-209
4.3
2025-05-26 CVE-2025-41441 Information Exposure Through an Error Message vulnerability in Synck Mailform PRO CGI 4.3.1.2
Mailform Pro CGI prior to 4.3.4 generates error messages containing sensitive information, which may allow a remote unauthenticated attacker to obtain coupon codes.
network
low complexity
synck CWE-209
5.3
2025-04-28 CVE-2025-0049 Information Exposure Through an Error Message vulnerability in Fortra Goanywhere Managed File Transfer
When a Web User without Create permission on subfolders attempts to upload a file to a non-existent directory, the error message includes the absolute server path which may allow Fuzzing for application mapping. This issue affects GoAnywhere: before 7.8.0.
network
low complexity
fortra CWE-209
4.3
2025-04-27 CVE-2025-46575 Information Exposure Through an Error Message vulnerability in ZTE Zxcloud Goldendb 6.1.03.09/6.1.03.10/7.2.01.01
There is an information disclosure vulnerability in the GoldenDB database product.
network
low complexity
zte CWE-209
7.5
2025-04-23 CVE-2025-25045 IBM InfoSphere Information 11.7 Server authenticated user to obtain sensitive information when a detailed technical error message is returned in a request.
network
low complexity
CWE-209
4.3
2025-04-16 CVE-2025-20150 A vulnerability in Cisco Nexus Dashboard could allow an unauthenticated, remote attacker to enumerate LDAP user accounts. This vulnerability is due to the improper handling of LDAP authentication requests.
network
low complexity
CWE-209
5.3
2025-03-29 CVE-2024-55895 IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
CWE-209
2.7
2025-03-27 CVE-2025-31141 Information Exposure Through an Error Message vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2025.03 exception could lead to credential leakage on Cloud Profiles page
network
low complexity
jetbrains CWE-209
7.5
2025-03-11 CVE-2025-23185 Due to improper error handling in SAP Business Objects Business Intelligence Platform, technical details of the application are revealed in exceptions thrown to the user and in stack traces.
network
low complexity
CWE-209
4.1
2025-02-27 CVE-2024-56493 IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is returned.
local
low complexity
CWE-209
3.3