Vulnerabilities > Information Exposure Through an Error Message

DATE CVE VULNERABILITY TITLE RISK
2023-07-13 CVE-2023-25948 Information Exposure Through an Error Message vulnerability in Honeywell products
Server information leak of configuration data when an error is generated in response to a specially crafted message. See Honeywell Security Notification for recommendations on upgrading and versioning.
network
low complexity
honeywell CWE-209
7.5
2023-07-13 CVE-2023-3362 Information Exposure Through an Error Message vulnerability in Gitlab 16.0.0/16.1.0
An information disclosure issue in GitLab CE/EE affecting all versions from 16.0 prior to 16.0.6, and version 16.1.0 allows unauthenticated actors to access the import error information if a project was imported from GitHub.
network
low complexity
gitlab CWE-209
5.3
2023-06-30 CVE-2023-37306 Information Exposure Through an Error Message vulnerability in Misp-Project Malware Information Sharing Platform 2.4.172
MISP 2.4.172 mishandles different certificate file extensions in server sync.
network
low complexity
misp-project CWE-209
7.5
2023-05-30 CVE-2023-33181 Information Exposure Through an Error Message vulnerability in Xibosignage Xibo
Xibo is a content management system (CMS).
network
low complexity
xibosignage CWE-209
5.3
2023-05-18 CVE-2022-4870 Information Exposure Through an Error Message vulnerability in Octopus Server
In affected versions of Octopus Deploy it is possible to discover network details via error message
network
low complexity
octopus CWE-209
5.3
2023-04-27 CVE-2023-31286 Information Exposure Through an Error Message vulnerability in Serenity Serene and Startsharp
An issue was discovered in Serenity Serene (and StartSharp) before 6.7.0.
network
low complexity
serenity CWE-209
5.3
2023-04-03 CVE-2022-4769 Information Exposure Through an Error Message vulnerability in Hitachi Vantara Pentaho Business Analytics Server
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.0 and 9.3.0.2, including 8.3.x display the target path on host when a file is uploaded with an invalid character in its name. 
network
low complexity
hitachi CWE-209
4.3
2023-04-03 CVE-2022-4770 Information Exposure Through an Error Message vulnerability in Hitachi Vantara Pentaho Business Analytics Server
Hitachi Vantara Pentaho Business Analytics Server prior to versions 9.4.0.0 and 9.3.0.2, including 8.3.x display the full parametrized SQL query in an error message when an invalid character is used within a Pentaho Report (*.prpt). 
network
low complexity
hitachi CWE-209
4.3
2023-03-02 CVE-2023-26051 Information Exposure Through an Error Message vulnerability in Saleor
Saleor is a headless, GraphQL commerce platform delivering personalized shopping experiences.
network
low complexity
saleor CWE-209
4.3
2023-03-02 CVE-2023-26052 Information Exposure Through an Error Message vulnerability in Saleor
Saleor is a headless, GraphQL commerce platform delivering personalized shopping experiences.
network
low complexity
saleor CWE-209
5.3