Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2021-07-07 CVE-2021-20417 Information Exposure Through an Error Message vulnerability in IBM Guardium Data Encryption 4.0.0.4
IBM Guardium Data Encryption (GDE) 4.0.0.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
4.3
2021-06-28 CVE-2021-20413 Information Exposure Through an Error Message vulnerability in IBM Guardium Data Encryption 4.0.0.4
IBM Guardium Data Encryption (GDE) 4.0.0.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
4.3
2021-06-24 CVE-2021-32712 Information Exposure Through an Error Message vulnerability in Shopware
Shopware is an open source eCommerce platform.
network
low complexity
shopware CWE-209
5.3
2021-06-21 CVE-2020-20470 Information Exposure Through an Error Message vulnerability in White Shark Systems Project White Shark Systems 1.3.2
White Shark System (WSS) 1.3.2 has web site physical path leakage vulnerability.
network
low complexity
white-shark-systems-project CWE-209
5.3
2021-06-16 CVE-2021-31159 Information Exposure Through an Error Message vulnerability in Zohocorp Manageengine Servicedesk Plus MSP 10.5
Zoho ManageEngine ServiceDesk Plus MSP before 10519 is vulnerable to a User Enumeration bug due to improper error-message generation in the Forgot Password functionality, aka SDPMSP-15732.
network
low complexity
zohocorp CWE-209
5.3
2021-06-11 CVE-2021-26997 Information Exposure Through an Error Message vulnerability in Netapp E-Series Santricity OS Controller
E-Series SANtricity OS Controller Software 11.x versions prior to 11.70.1 are susceptible to a vulnerability which when successfully exploited could allow a remote attacker to discover information via error messaging which may aid in crafting more complex attacks.
network
low complexity
netapp CWE-209
6.5
2021-06-08 CVE-2021-30357 Information Exposure Through an Error Message vulnerability in Checkpoint SSL Network Extender
SSL Network Extender Client for Linux before build 800008302 reveals part of the contents of the configuration file supplied, which allows partially disclosing files to which the user did not have access.
network
low complexity
checkpoint CWE-209
5.3
2021-06-02 CVE-2021-20371 Information Exposure Through an Error Message vulnerability in IBM products
IBM Jazz Foundation and IBM Engineering products could allow a remote attacker to obtain sensitive information when an error message is returned in the browser.
network
low complexity
ibm CWE-209
6.5
2021-05-27 CVE-2021-22885 Information Exposure Through an Error Message vulnerability in multiple products
A possible information disclosure / unintended method execution vulnerability in Action Pack >= 2.0.0 when using the `redirect_to` or `polymorphic_url`helper with untrusted user input.
network
low complexity
rubyonrails debian CWE-209
7.5
2021-05-24 CVE-2021-20428 Information Exposure Through an Error Message vulnerability in IBM Security Guardium 11.2
IBM Security Guardium 11.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
5.3