Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2021-09-23 CVE-2021-20485 Information Exposure Through an Error Message vulnerability in IBM Sterling File Gateway
IBM Sterling File Gateway 2.2.0.0 through 6.1.0.3 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
4.3
2021-09-23 CVE-2021-1546 Information Exposure Through an Error Message vulnerability in Cisco products
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information.
local
low complexity
cisco CWE-209
5.5
2021-09-14 CVE-2021-20508 Information Exposure Through an Error Message vulnerability in IBM Security Secret Server
IBM Security Secret Server up to 11.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
4.3
2021-09-09 CVE-2021-39458 Information Exposure Through an Error Message vulnerability in Redaxo 5.12.1
Triggering an error page of the import process in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS user has to alternate the files of a vaild file backup.
network
low complexity
redaxo CWE-209
6.5
2021-09-07 CVE-2021-32766 Information Exposure Through an Error Message vulnerability in Nextcloud Server
Nextcloud Text is an open source plaintext editing application which ships with the nextcloud server.
network
low complexity
nextcloud CWE-209
5.3
2021-09-07 CVE-2021-35947 Information Exposure Through an Error Message vulnerability in Owncloud
The public share controller in the ownCloud server before version 10.8.0 allows a remote attacker to see the internal path and the username of a public share by including invalid characters in the URL.
network
low complexity
owncloud CWE-209
5.3
2021-08-30 CVE-2021-25958 Information Exposure Through an Error Message vulnerability in Apache Ofbiz
In Apache Ofbiz, versions v17.12.01 to v17.12.07 implement a try catch exception to handle errors at multiple locations but leaks out sensitive table info which may aid the attacker for further recon.
network
low complexity
apache CWE-209
7.5
2021-08-23 CVE-2021-22249 Information Exposure Through an Error Message vulnerability in Gitlab
A verbose error message in GitLab EE affecting all versions since 12.2 could disclose the private email address of a user invited to a group
network
low complexity
gitlab CWE-209
4.3
2021-08-11 CVE-2017-16629 Information Exposure Through an Error Message vulnerability in Sapphireims 40971
In SapphireIMS 4097_1, it is possible to guess the registered/active usernames of the software from the errors it gives out for each type of user on the Login form.
network
low complexity
sapphireims CWE-209
7.5
2021-07-26 CVE-2021-20430 Information Exposure Through an Error Message vulnerability in IBM I2 Analyze 4.3.0/4.3.1/4.3.2
IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2) could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
5.3