Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2020-12-17 CVE-2020-4846 Information Exposure Through an Error Message vulnerability in IBM Security KEY Lifecycle Manager
IBM Security Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
2.7
2020-12-17 CVE-2020-35177 Information Exposure Through an Error Message vulnerability in Hashicorp Vault
HashiCorp Vault and Vault Enterprise 1.4.1 and newer allowed the enumeration of users via the LDAP auth method.
network
low complexity
hashicorp CWE-209
5.3
2020-12-16 CVE-2020-4907 Information Exposure Through an Error Message vulnerability in IBM Financial Transaction Manager for Multiplatform 3.2.4
IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
5.3
2020-12-09 CVE-2020-16128 Information Exposure Through an Error Message vulnerability in Canonical Ubuntu Linux
The aptdaemon DBus interface disclosed file existence disclosure by setting Terminal/DebconfSocket properties, aka GHSL-2020-192 and GHSL-2020-196.
local
low complexity
canonical CWE-209
3.8
2020-11-07 CVE-2020-16121 Information Exposure Through an Error Message vulnerability in multiple products
PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own.
local
low complexity
packagekit-project canonical CWE-209
3.3
2020-11-06 CVE-2020-4483 Information Exposure Through an Error Message vulnerability in IBM Urbancode Deploy
IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
4.3
2020-10-30 CVE-2020-4584 Information Exposure Through an Error Message vulnerability in IBM I2 Ibase 8.9.13
IBM i2 iBase 8.9.13 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
7.5
2020-10-30 CVE-2020-27015 Information Exposure Through an Error Message vulnerability in Trendmicro Antivirus 2020
Trend Micro Antivirus for Mac 2020 (Consumer) contains an Error Message Information Disclosure vulnerability that if exploited, could allow kernel pointers and debug messages to leak to userland.
local
low complexity
trendmicro CWE-209
4.4
2020-10-29 CVE-2019-4547 Information Exposure Through an Error Message vulnerability in IBM Security Directory Server 6.4.0.0
IBM Security Directory Server 6.4.0 generates an error message that includes sensitive information about its environment, users, or associated data.
network
low complexity
ibm CWE-209
5.3
2020-10-15 CVE-2020-15794 Information Exposure Through an Error Message vulnerability in Siemens Desigo Insight 4.0/5.0/6.0
A vulnerability has been identified in Desigo Insight (All versions).
network
low complexity
siemens CWE-209
4.3