Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2021-05-20 CVE-2021-29682 Information Exposure Through an Error Message vulnerability in IBM Security Identity Manager 7.0.2
IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
5.3
2021-05-20 CVE-2021-29688 Information Exposure Through an Error Message vulnerability in IBM Security Identity Manager 6.0.2/7.0.2
IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
7.5
2021-05-16 CVE-2021-29040 Information Exposure Through an Error Message vulnerability in Liferay DXP 7.0
The JSON web services in Liferay Portal 7.3.4 and earlier, and Liferay DXP 7.0 before fix pack 97, 7.1 before fix pack 20 and 7.2 before fix pack 10 may provide overly verbose error messages, which allows remote attackers to use the contents of error messages to help launch another, more focused attacks via crafted inputs.
network
low complexity
liferay CWE-209
5.3
2021-05-14 CVE-2021-20393 Information Exposure Through an Error Message vulnerability in IBM Qradar User Behavior Analytics 1.0.0/4.1.0
IBM QRadar User Behavior Analytics 1.0.0 through 4.1.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
7.5
2021-05-13 CVE-2020-23995 Information Exposure Through an Error Message vulnerability in Ilias
An information disclosure vulnerability in ILIAS before 5.3.19, 5.4.12 and 6.0 allows remote authenticated attackers to get the upload data path via a workspace upload.
network
low complexity
ilias CWE-209
6.5
2021-05-12 CVE-2021-23135 Information Exposure Through an Error Message vulnerability in Argoproj Argo CD
Exposure of System Data to an Unauthorized Control Sphere vulnerability in web UI of Argo CD allows attacker to cause leaked secret data into web UI error messages and logs.
local
low complexity
argoproj CWE-209
5.5
2021-05-12 CVE-2020-19275 Information Exposure Through an Error Message vulnerability in Dhcms Project Dhcms 20170918
An Information Disclosure vulnerability exists in dhcms 2017-09-18 when entering invalid characters after the normal interface, which causes an error that will leak the physical path.
network
low complexity
dhcms-project CWE-209
5.3
2021-05-11 CVE-2020-4536 Information Exposure Through an Error Message vulnerability in IBM Openpages GRC Platform
IBM OpenPages GRC Platform 8.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
4.3
2021-04-01 CVE-2021-21421 Information Exposure Through an Error Message vulnerability in Node-Etsy-Client Project Node-Etsy-Client
node-etsy-client is a NodeJs Etsy ReST API Client.
network
low complexity
node-etsy-client-project CWE-209
6.5
2021-04-01 CVE-2021-21416 Information Exposure Through an Error Message vulnerability in Django-Registration Project Django-Registration
django-registration is a user registration package for Django.
network
high complexity
django-registration-project CWE-209
2.6