Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2019-09-08 CVE-2019-16101 Information Exposure Through an Error Message vulnerability in Silver-Peak Unity Edgeconnect Sd-Wan Firmware 8.1.4.965644
Silver Peak EdgeConnect SD-WAN before 8.1.7.x allows remote attackers to obtain potentially sensitive stack traces by sending incorrect JSON data to the REST API, such as the rest/json/banners URI.
network
low complexity
silver-peak CWE-209
5.3
2019-08-21 CVE-2019-11602 Information Exposure Through an Error Message vulnerability in Bosch IOT Gateway Software and Prosyst MBS SDK
Leakage of stack traces in remote access to backup & restore in earlier versions than ProSyst mBS SDK 8.2.6 and Bosch IoT Gateway Software 9.2.0 allows remote attackers to gather information about the file system structure.
network
low complexity
bosch CWE-209
5.3
2019-08-20 CVE-2019-4485 Information Exposure Through an Error Message vulnerability in IBM products
IBM Emptoris Sourcing 10.1.0 through 10.1.3, IBM Contract Management 10.1.0 through 10.1.3, and IBM Emptoris Spend Analysis 10.1.0 through 10.1.3 generates an error message that includes sensitive information that could be used in further attacks against the system.
network
low complexity
ibm CWE-209
4.3
2019-08-20 CVE-2019-4484 Information Exposure Through an Error Message vulnerability in IBM products
IBM Emptoris Sourcing 10.1.0 through 10.1.3, IBM Contract Management 10.1.0 through 10.1.3, and IBM Emptoris Spend Analysis 10.1.0 through 10.1.3 generates an error message that includes sensitive information that could be used in further attacks against the system.
network
low complexity
ibm CWE-209
4.3
2019-08-20 CVE-2019-4420 Information Exposure Through an Error Message vulnerability in IBM products
IBM Intelligent Operations Center V5.1.0 through V5.2.0 could disclose detailed error messages, revealing sensitive information that could aid in further attacks against the system.
local
low complexity
ibm CWE-209
6.2
2019-08-20 CVE-2019-4308 Information Exposure Through an Error Message vulnerability in IBM products
IBM Emptoris Sourcing 10.1.0 through 10.1.3, IBM Contract Management 10.1.0 through 10.1.3, and IBM Emptoris Spend Analysis 10.1.0 through 10.1.3 could allow an authenticated user to obtain sensitive information from error messages IBM X-Force ID: 161034.
network
low complexity
ibm CWE-209
4.3
2019-08-09 CVE-2019-14433 Information Exposure Through an Error Message vulnerability in multiple products
An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2.
network
low complexity
openstack canonical redhat debian CWE-209
6.5
2019-07-29 CVE-2019-1020013 Information Exposure Through an Error Message vulnerability in Parseplatform Parse-Server
parse-server before 3.6.0 allows account enumeration.
network
low complexity
parseplatform CWE-209
5.3
2019-07-18 CVE-2019-7941 Information Exposure Through an Error Message vulnerability in Adobe Campaign
Adobe Campaign Classic version 18.10.5-8984 and earlier versions have an Information Exposure Through an Error Message vulnerability.
network
low complexity
adobe CWE-209
7.5
2019-07-02 CVE-2019-4129 Information Exposure Through an Error Message vulnerability in IBM Spectrum Protect Operations Center
IBM Spectrum Protect Operations Center 7.1 and 8.1 could allow a remote attacker to obtain sensitive information, caused by an error message containing a stack trace.
network
low complexity
ibm CWE-209
5.3