Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Playbook Firmware MEDIUM 6.5
CVE-2012-5828

BlackBerry PlayBook before 2.1 has an Information Disclosure Vulnerability via a Web browser component error

Fix: 2.1+
Fix from $1,600 2020-02-10
Open School MEDIUM 6.5
CVE-2014-9127

Open-School Community Edition 2.2 does not properly restrict access to the export functionality, which allows remote authenticated users to obtain se…

No fix yet
Fix from $1,600 2020-02-08
Manageengine Applications Manager HIGH 7.5
CVE-2014-7863EPSS 83%

The FailOverHelperServlet (aka FailServlet) servlet in ZOHO ManageEngine Applications Manager before 11.9 build 11912, OpManager 8 through 11.5 build…

Fix: after 11.9
Fix from $1,950 2020-02-08
Vlc Media Player MEDIUM 5.3
CVE-2013-3564

The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'd…

Fix: 2.0.7+
Fix from $1,600 2020-02-06
Linksys E4200 Firmware MEDIUM 5.3
CVE-2013-2683EPSS 13%

Cisco Linksys E4200 1.0.05 Build 7 devices contain an Information Disclosure Vulnerability which allows remote attackers to obtain private IP address…

No fix yet
Fix from $1,600 2020-02-06
Wgr614v9 Firmware MEDIUM 6.5
CVE-2012-6341

An Information Disclosure vulnerability exists in the my config file in NEtGEAR WGR614 v7 and v9, which could let a malicious user recover all previo…

No fix yet
Fix from $1,600 2020-02-06
Enterprise Linux Desktop HIGH 7.5
CVE-2013-4166

The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and earlier and Evolution Data Server 3.9.5 and earlier does…

Fix: after 3.9.5
Fix from $1,950 2020-02-06
Chrome MEDIUM 6.5
CVE-2010-3917

Google Chrome before 3.0 does not properly handle XML documents, which allows remote attackers to obtain sensitive information via a crafted web site.

Fix: 3.0+
Fix from $1,600 2020-02-06
Asset Manager HIGH 7.5
CVE-2015-2802EPSS 6%

An Information Disclosure vulnerability exists in HP SiteScope 11.2 and 11.3 on Windows, Linux and Solaris, HP Asset Manager 9.30 through 9.32, 9.40 …

Fix: after 11.24
Fix from $1,950 2020-02-04
Security Directory Server MEDIUM 5.3
CVE-2019-4562

IBM Security Directory Server 6.4.0 stores sensitive information in URLs. This may lead to information disclosure if unauthorized parties have access…

Fix: 6.4.0.20+
Fix from $1,600 2020-02-04
Mfc 9970cdw Firmware HIGH 7.5
CVE-2013-2676

Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresse…

No fix yet
Fix from $1,950 2020-02-04
Joomla\! HIGH 7.5
CVE-2011-4937

Joomla! 1.7.1 has core information disclosure due to inadequate error checking.

Fix: 1.7.2+
Fix from $1,950 2020-02-04
Mfc 9970cdw Firmware HIGH 7.5
CVE-2013-2674

Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive informati…

No fix yet
Fix from $1,950 2020-02-03
Safari HIGH 7.5
CVE-2016-4676

A Cross-origin vulnerability exists in WebKit in Apple Safari before 10.0.1 when processing location attributes, which could let a remote malicious u…

Fix: 10.0.1+
Fix from $1,950 2020-02-03
Telaen MEDIUM 5.3
CVE-2013-2624EPSS 6%

Telean before 1.3.1 contains a full path disclosure vulnerability which could allow remote attackers to obtain sensitive information through a specia…

Fix: 1.3.1+
Fix from $1,600 2020-02-03
Tinywebgallery MEDIUM 5.3
CVE-2013-2631

TinyWebGallery (TWG) 1.8.9 and earlier contains a full path disclosure vulnerability which allows remote attackers to obtain sensitive information th…

Fix: after 1.8.9
Fix from $1,600 2020-02-03
Dynamic Content Elements MEDIUM 5.3
CVE-2014-8328

The default configuration in the Dynamic Content Elements (dce) extension before 0.11.5 for TYPO3 allows remote attackers to obtain sensitive install…

Fix: 0.11.5+
Fix from $1,600 2020-02-03
Fedora HIGH 7.5
CVE-2011-4088

ABRT might allow attackers to obtain sensitive information from crash reports.

Mitigation only
Fix from $1,950 2020-01-31
Rubiweb HIGH 7.5
CVE-2019-19550

Remote Authentication Bypass in Senior Rubiweb 6.2.34.28 and 6.2.34.37 allows admin access to sensitive information of affected users using vulnerabl…

No fix yet
Fix from $1,950 2020-01-31
Flippy MEDIUM 6.5
CVE-2013-4187

The Flippy module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to nodes, which allows remote authenticated users with the perm…

Fix: after 7.x-1.2
Fix from $1,600 2020-01-30
Network Management System MEDIUM 5.3
CVE-2013-1631

Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action

Fix: 2.1.0+
Fix from $1,600 2020-01-30
Nextgen Gallery HIGH 7.5
CVE-2013-0291EPSS 16%

NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability

No fix yet
Fix from $1,950 2020-01-30
Jenkins MEDIUM 5.4
CVE-2020-2103EPSS 7%

Jenkins 2.218 and earlier, LTS 2.204.1 and earlier exposed session identifiers on a user's detail object in the whoAmI diagnostic page.

Fix: after 2.218
Fix from $1,600 2020-01-29
Dcs 3411 Firmware HIGH 7.5
CVE-2013-1602EPSS 15%

An Information Disclosure vulnerability exists due to insufficient validation of authentication cookies for the RTSP session in D-Link DCS-5635 1.01,…

No fix yet
Fix from $1,950 2020-01-28
Dcs 3411 Firmware MEDIUM 5.3
CVE-2013-1601EPSS 13%

An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LI…

No fix yet
Fix from $1,600 2020-01-28
Mediawiki MEDIUM 5.3
CVE-2013-6455

The CentralAuth extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to obtain usernames via …

Fix: 1.19.10 / 1.21.4+
Fix from $1,600 2020-01-28
GitLab HIGH 7.5
CVE-2019-5470

An information disclosure issue was discovered GitLab versions < 12.1.2, < 12.0.4, and < 11.11.6 in the security dashboard which could result in disc…

Fix: 11.11.6 / 12.0.4+
Fix from $1,950 2020-01-28
GitLab MEDIUM 5.3
CVE-2019-15578

An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE). The path of a pr…

Fix: 12.1.12 / 12.2.6+
Fix from $1,600 2020-01-28
GitLab MEDIUM 5.3
CVE-2019-15579

An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE) where the assigne…

Fix: 12.1.12 / 12.2.6+
Fix from $1,600 2020-01-28
GitLab HIGH 7.5
CVE-2019-15583

An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE). When an issue wa…

Fix: 12.1.12 / 12.2.6+
Fix from $1,950 2020-01-28