Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Watston Studio Local MEDIUM 5.3
CVE-2018-1682

IBM Watson Studio Local 1.2.3 could disclose sensitive information over the network that an attacked could use in further attacks against the system.…

Patch available
Fix from $1,600 2019-12-30
Api MEDIUM 5.3
CVE-2013-4868

Karotz API 12.07.19.00: Session Token Information Disclosure

No fix yet
Fix from $1,600 2019-12-27
Jdk HIGH 7.5
CVE-2012-4420

An information disclosure flaw was found in the way the Java Virtual Machine (JVM) implementation of Java SE 7 as provided by OpenJDK 7 incorrectly i…

No fix yet
Fix from $1,950 2019-12-26
Pfc 200 Firmware MEDIUM 5.3
CVE-2019-5073

An exploitable information exposure vulnerability exists in the iocheckd service "I/O-Check" functionality of WAGO PFC200 Firmware versions 03.01.07(…

No fix yet
Fix from $1,600 2019-12-18
GitLab HIGH 7.5
CVE-2019-15576

An information disclosure vulnerability exists in GitLab CE/EE <v12.3.2, <v12.2.6, and <v12.1.12 that allowed an attacker to view private system note…

Fix: 12.1.12 / 12.2.6+
Fix from $1,950 2019-12-18
GitLab MEDIUM 6.5
CVE-2019-15580

An information exposure vulnerability exists in gitlab.com <v12.3.2, <v12.2.6, and <v12.1.10 when using the blocking merge request feature, it was po…

Fix: 12.1.10 / 12.2.6+
Fix from $1,600 2019-12-18
Iphone Os HIGH 7.5
CVE-2019-8620

A user privacy issue was addressed by removing the broadcast MAC address. This issue is fixed in iOS 12.3, tvOS 12.3, watchOS 5.2.1. A device may be …

Fix: 5.2.1 / 12.3+
Fix from $1,950 2019-12-18
Iphone Os HIGH 7.5
CVE-2019-8567

A user privacy issue was addressed by removing the broadcast MAC address. This issue is fixed in iOS 12.2. A device may be passively tracked by its W…

Fix: 12.2+
Fix from $1,950 2019-12-18
Fedora HIGH 7.5
CVE-2019-3992

ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can access the server's config…

Fix: after 3.1.4-57bea22
Fix from $1,950 2019-12-17
Fedora HIGH 7.5
CVE-2019-3993EPSS 46%

ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can recover a user's password …

Fix: after 3.1.4-57bea22
Fix from $1,950 2019-12-17
Superset MEDIUM 5.3
CVE-2019-12414

In Apache Incubator Superset before 0.32, a user can view database names that he has no access to on a dropdown list in SQLLab

Fix: 0.32+
Fix from $1,600 2019-12-16
Api Connect MEDIUM 5.5
CVE-2019-4444

IBM API Connect 2018.1 through 2018.4.1.7 Developer Portal's user registration page does not disable password autocomplete. An attacker with access t…

Fix: after 2018.4.1.7
Fix from $1,600 2019-12-16
Sppa T3000 Application Server MEDIUM 5.3
CVE-2019-18335

A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…

Mitigation only
Fix from $1,600 2019-12-12
Sppa T3000 Application Server MEDIUM 5.3
CVE-2019-18331

A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…

Mitigation only
Fix from $1,600 2019-12-12
Sppa T3000 Application Server MEDIUM 5.3
CVE-2019-18332

A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…

Mitigation only
Fix from $1,600 2019-12-12
Sppa T3000 Application Server MEDIUM 5.3
CVE-2019-18333

A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…

Mitigation only
Fix from $1,600 2019-12-12
Sppa T3000 Application Server MEDIUM 5.3
CVE-2019-18334

A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). An attacker with network access to the A…

Mitigation only
Fix from $1,600 2019-12-12
Sppa T3000 Application Server MEDIUM 5.3
CVE-2019-18286

A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Application Server exposes directory…

No fix yet
Fix from $1,600 2019-12-12
Sppa T3000 Application Server MEDIUM 5.3
CVE-2019-18287

A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The Application Server exposes directory…

No fix yet
Fix from $1,600 2019-12-12
Enable Now HIGH 7.5
CVE-2019-0405

SAP Enable Now, before version 1911, leaks information about the existence of a particular user which can be used to construct a list of users, leadi…

Fix: 1911+
Fix from $1,950 2019-12-11
Authentication Library MEDIUM 6.5
CVE-2019-1487

An information disclosure vulnerability in Android Apps using Microsoft Authentication Library (MSAL) 0.3.1-Alpha or later exists under specific cond…

Fix: after 0.2.2
Fix from $1,600 2019-12-10
Windows 10 MEDIUM 6.0
CVE-2019-1470EPSS 6%

An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validate input from an authenticated…

Patch available
Fix from $1,600 2019-12-10
Windows 10 MEDIUM 5.5
CVE-2019-1472

An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosu…

Patch available
Fix from $1,600 2019-12-10
Windows 10 MEDIUM 5.5
CVE-2019-1474

An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Windows Kernel Information Disclosu…

Patch available
Fix from $1,600 2019-12-10
Office MEDIUM 5.5
CVE-2019-1463

An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Micros…

Patch available
Fix from $1,600 2019-12-10
Excel MEDIUM 5.5
CVE-2019-1464EPSS 8%

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information…

Patch available
Fix from $1,600 2019-12-10
Windows 10 MEDIUM 6.5
CVE-2019-1467EPSS 6%

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka 'Windows GDI Infor…

Patch available
Fix from $1,600 2019-12-10
Windows 10 MEDIUM 5.5
CVE-2019-1469

An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Win32k Information Disclosure V…

Patch available
Fix from $1,600 2019-12-10
Office MEDIUM 5.5
CVE-2019-1400

An information disclosure vulnerability exists in Microsoft Access software when the software fails to properly handle objects in memory, aka 'Micros…

Patch available
Fix from $1,600 2019-12-10
Chrome MEDIUM 6.5
CVE-2019-13737

Insufficient policy enforcement in autocomplete in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive info…

Fix: 79.0.3945.79+
Fix from $1,600 2019-12-10