Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2023-10-17 CVE-2022-43891 Information Exposure Through an Error Message vulnerability in IBM Security Verify Privilege On-Premises
IBM Security Verify Privilege On-Premises 11.5 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
network
low complexity
ibm CWE-209
5.3
2023-10-16 CVE-2023-4457 Information Exposure Through an Error Message vulnerability in Grafana Google Sheets
Grafana is an open-source platform for monitoring and observability. The Google Sheets data source plugin for Grafana, versions 0.9.0 to 1.2.2 are vulnerable to an information disclosure vulnerability. The plugin did not properly sanitize error messages, making it potentially expose the Google Sheet API-key that is configured for the data source. This vulnerability was fixed in version 1.2.2.
network
low complexity
grafana CWE-209
7.5
2023-09-27 CVE-2023-0833 Information Exposure Through an Error Message vulnerability in multiple products
A flaw was found in Red Hat's AMQ-Streams, which ships a version of the OKHttp component with an information disclosure flaw via an exception triggered by a header containing an illegal value.
local
low complexity
squareup redhat CWE-209
5.5
2023-09-22 CVE-2023-41027 Information Exposure Through an Error Message vulnerability in Juplink Rx4-1500 Firmware 1.0.4/1.0.5
Credential disclosure in the '/webs/userpasswd.htm' endpoint in Juplink RX4-1500 Wifi router firmware versions V1.0.4 and V1.0.5 allows an authenticated attacker to leak the password for the administrative account via requests to the vulnerable endpoint.
network
low complexity
juplink CWE-209
8.8
2023-08-31 CVE-2023-33834 Information Exposure Through an Error Message vulnerability in IBM Security Verify Information Queue 10.0.4/10.0.5
IBM Security Verify Information Queue 10.0.4 and 10.0.5 could allow a remote attacker to obtain sensitive information that could aid in further attacks against the system.
network
low complexity
ibm CWE-209
5.3
2023-08-31 CVE-2023-33835 Information Exposure Through an Error Message vulnerability in IBM Security Verify Information Queue 10.0.4/10.0.5
IBM Security Verify Information Queue 10.0.4 and 10.0.5 could allow a remote attacker to obtain sensitive information that could aid in further attacks against the system.
network
low complexity
ibm CWE-209
7.5
2023-08-28 CVE-2023-40757 Information Exposure Through an Error Message vulnerability in PHPjabbers Food Delivery Script 3.1
User enumeration is found in PHPJabbers Food Delivery Script v3.1.
network
low complexity
phpjabbers CWE-209
critical
9.8
2023-08-28 CVE-2023-40758 Information Exposure Through an Error Message vulnerability in PHPjabbers Document Creator 1.0
User enumeration is found in PHPJabbers Document Creator v1.0.
network
low complexity
phpjabbers CWE-209
critical
9.8
2023-08-28 CVE-2023-40759 Information Exposure Through an Error Message vulnerability in PHPjabbers Restaurant Booking Script 3.0
User enumeration is found in PHP Jabbers Restaurant Booking Script v3.0.
network
low complexity
phpjabbers CWE-209
critical
9.8
2023-08-28 CVE-2023-40760 Information Exposure Through an Error Message vulnerability in PHPjabbers Hotel Booking System 4.0
User enumeration is found in PHP Jabbers Hotel Booking System v4.0.
network
low complexity
phpjabbers CWE-209
critical
9.8