Vulnerabilities > Information Exposure Through Discrepancy

DATE CVE VULNERABILITY TITLE RISK
2021-01-11 CVE-2021-0321 Information Exposure Through Discrepancy vulnerability in Google Android 11.0
In enforceDumpPermissionForPackage of ActivityManagerService.java, there is a possible way to determine if a package is installed due to side channel information disclosure.
local
low complexity
google CWE-203
5.5
2021-01-08 CVE-2020-28208 Information Exposure Through Discrepancy vulnerability in Rocket.Chat
An email address enumeration vulnerability exists in the password reset function of Rocket.Chat through 3.9.1.
network
low complexity
rocket-chat CWE-203
5.3
2020-12-30 CVE-2019-12953 Information Exposure Through Discrepancy vulnerability in Dropbear SSH Project Dropbear SSH
Dropbear 2011.54 through 2018.76 has an inconsistent failure delay that may lead to revealing valid usernames, a different issue than CVE-2018-15599.
network
low complexity
dropbear-ssh-project CWE-203
5.3
2020-12-21 CVE-2020-35624 Information Exposure Through Discrepancy vulnerability in Mediawiki
An issue was discovered in the SecurePoll extension for MediaWiki through 1.35.1.
network
low complexity
mediawiki CWE-203
5.3
2020-12-18 CVE-2020-35480 Information Exposure Through Discrepancy vulnerability in multiple products
An issue was discovered in MediaWiki before 1.35.1.
network
low complexity
mediawiki debian fedoraproject CWE-203
5.3
2020-12-15 CVE-2020-27026 Information Exposure Through Discrepancy vulnerability in Google Android 11.0
During boot, the device unlock interface behaves differently depending on if a fingerprint registered to the device is present.
local
low complexity
google CWE-203
5.5
2020-12-14 CVE-2020-0464 Information Exposure Through Discrepancy vulnerability in Google Android 10.0
In resolv_cache_lookup of res_cache.cpp, there is a possible side channel information disclosure.
local
low complexity
google CWE-203
5.5
2020-11-13 CVE-2020-7962 Information Exposure Through Discrepancy vulnerability in Oneidentity Password Manager 5.8
An issue was discovered in One Identity Password Manager 5.8.
network
low complexity
oneidentity CWE-203
5.3
2020-11-12 CVE-2020-12912 Information Exposure Through Discrepancy vulnerability in AMD Energy Driver for Linux
A potential vulnerability in the AMD extension to Linux "hwmon" service may allow an attacker to use the Linux-based Running Average Power Limit (RAPL) interface to show various side channel attacks.
local
low complexity
amd CWE-203
5.5
2020-11-12 CVE-2020-8695 Information Exposure Through Discrepancy vulnerability in multiple products
Observable discrepancy in the RAPL interface for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel fedoraproject debian CWE-203
5.5