Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2019-08-20 CVE-2019-4308 Information Exposure Through an Error Message vulnerability in IBM products
IBM Emptoris Sourcing 10.1.0 through 10.1.3, IBM Contract Management 10.1.0 through 10.1.3, and IBM Emptoris Spend Analysis 10.1.0 through 10.1.3 could allow an authenticated user to obtain sensitive information from error messages IBM X-Force ID: 161034.
network
low complexity
ibm CWE-209
4.3
2019-08-09 CVE-2019-14433 Information Exposure Through an Error Message vulnerability in multiple products
An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2.
network
low complexity
openstack canonical redhat debian CWE-209
6.5
2019-07-29 CVE-2019-1020013 Information Exposure Through an Error Message vulnerability in Parseplatform Parse-Server
parse-server before 3.6.0 allows account enumeration.
network
low complexity
parseplatform CWE-209
5.3
2019-07-18 CVE-2019-7941 Information Exposure Through an Error Message vulnerability in Adobe Campaign
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Information Exposure Through an Error Message vulnerability.
network
low complexity
adobe CWE-209
7.5
2019-07-02 CVE-2019-4129 Information Exposure Through an Error Message vulnerability in IBM Spectrum Protect Operations Center
IBM Spectrum Protect Operations Center 7.1 and 8.1 could allow a remote attacker to obtain sensitive information, caused by an error message containing a stack trace.
network
low complexity
ibm CWE-209
5.3
2019-06-28 CVE-2019-4269 Information Exposure Through an Error Message vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Admin Console could allow a remote attacker to obtain sensitive information when a specially crafted url causes a stack trace to be dumped.
network
low complexity
ibm CWE-209
7.5
2019-06-25 CVE-2019-4377 Information Exposure Through an Error Message vulnerability in IBM Sterling B2B Integrator
IBM Sterling B2B Integrator 6.0.0.0 and 6.0.0.1 reveals sensitive information from a stack trace that could be used in further attacks against the system.
network
low complexity
ibm CWE-209
4.3
2019-06-20 CVE-2019-12903 Information Exposure Through an Error Message vulnerability in Pydio Cells
Pydio Cells before 1.5.0, when supplied with a Name field in an unexpected Unicode format, fails to handle this and includes the database column/table name as pert of the error message, exposing sensitive information.
network
low complexity
pydio CWE-209
4.3
2019-06-06 CVE-2019-4257 Information Exposure Through an Error Message vulnerability in IBM products
IBM InfoSphere Information Server 11.5 and 11.7 is affected by an information disclosure vulnerability.
network
low complexity
ibm CWE-209
4.3
2019-06-06 CVE-2019-4219 Information Exposure Through an Error Message vulnerability in IBM Security Information Queue 1.0.0/1.0.1/1.0.2
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 generates an error message that includes sensitive information that could be used in further attacks against the system.
network
low complexity
ibm CWE-209
5.3