Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.5
CVE-2018-21076
An issue was discovered on Samsung mobile devices with N(7.x) (Exynos8890/8895 chipsets) software. There is information disclosure (a KASLR offset) i…
Android
Mitigation only
MEDIUM 6.2
CVE-2018-21045
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard access in the lockscreen state via a copy-and-p…
Android
Mitigation only
MEDIUM 6.2
CVE-2018-21048
An issue was discovered on Samsung mobile devices with O(8.x) software. There is a Notification leak on a locked device in Standalone Dex mode. The S…
Android
Mitigation only
HIGH 7.5
CVE-2018-21059
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard content visibility in the locked state via the …
Android
Mitigation only
HIGH 7.5
CVE-2018-21060
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is a Keyboard learned words leak in the locked state via the…
Android
Mitigation only
HIGH 7.5
CVE-2018-21083
An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) (Exynos or Qualcomm chipsets) software. There is information disclo…
Android
Mitigation only
HIGH 7.5
CVE-2017-18643
An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. There is information disclosure of the kbase_context address of a …
Android
Mitigation only
MEDIUM 5.3
CVE-2017-18686
An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) software. Contact information can leak to a log file because of the broadcas…
Android
Mitigation only
MEDIUM 5.3
CVE-2017-18687
An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. An attacker can obtain the full pathnames of…
Android
Mitigation only
MEDIUM 5.3
CVE-2017-18694
An issue was discovered on Samsung mobile devices with software through 2016-10-25 (Exynos5 chipsets). Attackers can read kernel addresses in the log…
Android
Mitigation only
HIGH 8.8
CVE-2020-10264
CB3 SW Version 3.3 and upwards, e-series SW Version 5.0 and upwards allow authenticated access to the RTDE (Real-Time Data Exchange) interface on por…
Ur Software
after 3.3.3.292
MEDIUM 6.5
CVE-2019-19000
For ABB eSOMS 4.0 to 6.0.3, the Cache-Control and Pragma HTTP header(s) have not been properly configured within the application response. This can p…
Esoms
after 6.0.3
HIGH 7.7
CVE-2020-7944
In Continuous Delivery for Puppet Enterprise (CD4PE) before 3.4.0, changes to resources or classes containing Sensitive parameters can result in the …
Continuous Delivery
3.4.0+
MEDIUM 5.3
CVE-2020-6812
The first time AirPods are connected to an iPhone, they become named after the user's name by default (e.g. Jane Doe's AirPods.) Websites with camera…
Firefox
68.6.0 / 74.0+
HIGH 7.5
CVE-2020-3800
Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and…
Acrobat Dc
15.006.30518 / 17.011.30166+
HIGH 7.5
CVE-2020-6993
In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, an attacker can gain access to sensitive in…
Pt 7528 24tx Hv Firmware
after 4.0
MEDIUM 5.3
CVE-2019-20616
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. Gallery leaks a thumbnail of Private Mode content. The Samsung ID …
Android
Mitigation only
MEDIUM 5.3
CVE-2020-4309
IBM Content Navigator 3.0CD could disclose sensitive information to an unauthenticated user which could be used to aid in further attacks against the…
Content Navigator
Patch available
MEDIUM 5.3
CVE-2020-10871
In OpenWrt LuCI git-20.x, remote unauthenticated attackers can retrieve the list of installed packages and services. NOTE: the vendor disputes the si…
Luci
Patch available
HIGH 7.5
CVE-2018-20333
An issue was discovered in ASUSWRT 3.0.0.4.384.20308. An unauthenticated user can request /update_applist.asp to see if a USB device is attached to t…
Asuswrt
No fix yet
HIGH 7.5
CVE-2019-15656
D-Link DSL-2875AL and DSL-2877AL devices through 1.00.05 are prone to information disclosure via a simple crafted request to index.asp on the web man…
Dsl 2875al Firmware
after 1.00.05
MEDIUM 5.5
CVE-2020-1753
A security flaw was found in Ansible Engine, all Ansible 2.7.x versions prior to 2.7.17, all Ansible 2.8.x versions prior to 2.8.11 and all Ansible 2…
Ansible Engine
2.7.18 / 2.8.11+
MEDIUM 5.3
CVE-2020-10090
GitLab 11.7 through 12.8.1 allows Information Disclosure. Under certain group conditions, group epic information was unintentionally being disclosed.
GitLab
after 12.8.1
MEDIUM 6.3
CVE-2020-10195
The popup-builder plugin before 3.64.1 for WordPress allows information disclosure and settings modification, leading to in-scope privilege escalatio…
Popup Builder
3.64.1+
MEDIUM 6.5
CVE-2019-16157
An information exposure vulnerability in Fortinet FortiWeb 6.2.0 CLI and earlier may allow an authenticated user to view sensitive information being …
Fortiweb
after 6.2.0
MEDIUM 5.3
CVE-2019-9103
An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB31…
Mb3170 Firmware
after 4.0
HIGH 7.5
CVE-2020-0062
In Euicc, there is a possible information disclosure due to an included test Certificate. This could lead to remote information disclosure with no ad…
Android
Mitigation only
MEDIUM 5.4
CVE-2020-6178
SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser history or log files, leading to…
Enable Now
1911+
MEDIUM 5.0
CVE-2020-0031
In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to display sensitive information to th…
Android
Mitigation only
HIGH 7.5
CVE-2012-1094
JBoss AS 7 prior to 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-contexts list to be mismatched…
Jboss Application Server
7.1.1+