Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2022-01-10 CVE-2021-38894 Information Exposure Through an Error Message vulnerability in IBM Security Verify Access 10.0.0/10.0.1.0/10.0.2.0
IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
2.7
2021-12-13 CVE-2021-44155 Information Exposure Through an Error Message vulnerability in Reprisesoftware Reprise License Manager 14.2
An issue was discovered in /goform/login_process in Reprise RLM 14.2.
network
low complexity
reprisesoftware CWE-209
5.3
2021-12-08 CVE-2021-43542 Information Exposure Through an Error Message vulnerability in multiple products
Using XMLHttpRequest, an attacker could have identified installed applications by probing error messages for loading external protocols.
network
low complexity
mozilla debian CWE-209
6.5
2021-11-23 CVE-2021-38980 Information Exposure Through an Error Message vulnerability in IBM products
IBM Tivoli Key Lifecycle Manager (IBM Security Guardium Key Lifecycle Manager) 3.0, 3.0.1, 4.0, and 4.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
5.3
2021-11-15 CVE-2021-38981 Information Exposure Through an Error Message vulnerability in IBM products
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
5.3
2021-11-04 CVE-2021-40126 Information Exposure Through an Error Message vulnerability in Cisco Umbrella
A vulnerability in the web-based dashboard of Cisco Umbrella could allow an authenticated, remote attacker to perform an email enumeration attack against the Umbrella infrastructure.
network
low complexity
cisco CWE-209
4.3
2021-10-11 CVE-2021-35060 Information Exposure Through an Error Message vulnerability in Openwaygroup Way4
/way4acs/enroll in OpenWay WAY4 ACS before 1.2.278-2693 allows unauthenticated attackers to leverage response differences to discover whether a specific payment card number is stored in the system.
network
low complexity
openwaygroup CWE-209
5.3
2021-10-07 CVE-2021-20552 Information Exposure Through an Error Message vulnerability in IBM Sterling File Gateway
IBM Sterling File Gateway 6.0.0.0 through 6.1.1.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
4.3
2021-09-23 CVE-2020-4941 Information Exposure Through an Error Message vulnerability in IBM Edge Application Manager 4.2
IBM Edge 4.2 could reveal sensitive version information about the server from error pages that could aid an attacker in further attacks against the system.
network
low complexity
ibm CWE-209
4.3
2021-09-23 CVE-2021-20377 Information Exposure Through an Error Message vulnerability in IBM Security Guardium 11.3
IBM Security Guardium 11.3 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
2.7