Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
MEDIUM 5.5 CVE-2018-21076 An issue was discovered on Samsung mobile devices with N(7.x) (Exynos8890/8895 chipsets) software. There is information disclosure (a KASLR offset) i… Android Mitigation only Fix from $1,6002020-04-08 MEDIUM 6.2 CVE-2018-21045 An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard access in the lockscreen state via a copy-and-p… Android Mitigation only Fix from $1,6002020-04-08 MEDIUM 6.2 CVE-2018-21048 An issue was discovered on Samsung mobile devices with O(8.x) software. There is a Notification leak on a locked device in Standalone Dex mode. The S… Android Mitigation only Fix from $1,6002020-04-08 HIGH 7.5 CVE-2018-21059 An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard content visibility in the locked state via the … Android Mitigation only Fix from $1,9502020-04-08 HIGH 7.5 CVE-2018-21060 An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is a Keyboard learned words leak in the locked state via the… Android Mitigation only Fix from $1,9502020-04-08 HIGH 7.5 CVE-2018-21083 An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) (Exynos or Qualcomm chipsets) software. There is information disclo… Android Mitigation only Fix from $1,9502020-04-08 HIGH 7.5 CVE-2017-18643 An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. There is information disclosure of the kbase_context address of a … Android Mitigation only Fix from $1,9502020-04-08 MEDIUM 5.3 CVE-2017-18686 An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) software. Contact information can leak to a log file because of the broadcas… Android Mitigation only Fix from $1,6002020-04-07 MEDIUM 5.3 CVE-2017-18687 An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. An attacker can obtain the full pathnames of… Android Mitigation only Fix from $1,6002020-04-07 MEDIUM 5.3 CVE-2017-18694 An issue was discovered on Samsung mobile devices with software through 2016-10-25 (Exynos5 chipsets). Attackers can read kernel addresses in the log… Android Mitigation only Fix from $1,6002020-04-07 HIGH 8.8 CVE-2020-10264 CB3 SW Version 3.3 and upwards, e-series SW Version 5.0 and upwards allow authenticated access to the RTDE (Real-Time Data Exchange) interface on por… Ur Software after 3.3.3.292 Fix from $1,9502020-04-06 MEDIUM 6.5 CVE-2019-19000 For ABB eSOMS 4.0 to 6.0.3, the Cache-Control and Pragma HTTP header(s) have not been properly configured within the application response. This can p… Esoms after 6.0.3 Fix from $1,6002020-04-02 HIGH 7.7 CVE-2020-7944 In Continuous Delivery for Puppet Enterprise (CD4PE) before 3.4.0, changes to resources or classes containing Sensitive parameters can result in the … Continuous Delivery 3.4.0+ Fix from $1,9502020-03-26 MEDIUM 5.3 CVE-2020-6812 The first time AirPods are connected to an iPhone, they become named after the user's name by default (e.g. Jane Doe's AirPods.) Websites with camera… Firefox 68.6.0 / 74.0+ Fix from $1,6002020-03-25 HIGH 7.5 CVE-2020-3800 Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and… Acrobat Dc 15.006.30518 / 17.011.30166+ Fix from $1,9502020-03-25 HIGH 7.5 CVE-2020-6993 In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, an attacker can gain access to sensitive in… Pt 7528 24tx Hv Firmware after 4.0 Fix from $1,9502020-03-24 MEDIUM 5.3 CVE-2019-20616 An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. Gallery leaks a thumbnail of Private Mode content. The Samsung ID … Android Mitigation only Fix from $1,6002020-03-24 MEDIUM 5.3 CVE-2020-4309 IBM Content Navigator 3.0CD could disclose sensitive information to an unauthenticated user which could be used to aid in further attacks against the… Content Navigator Patch available Fix from $1,6002020-03-24 MEDIUM 5.3 CVE-2020-10871 In OpenWrt LuCI git-20.x, remote unauthenticated attackers can retrieve the list of installed packages and services. NOTE: the vendor disputes the si… Luci Patch available Fix from $1,6002020-03-23 HIGH 7.5 CVE-2018-20333 An issue was discovered in ASUSWRT 3.0.0.4.384.20308. An unauthenticated user can request /update_applist.asp to see if a USB device is attached to t… Asuswrt No fix yet Fix from $1,9502020-03-20 HIGH 7.5 CVE-2019-15656 D-Link DSL-2875AL and DSL-2877AL devices through 1.00.05 are prone to information disclosure via a simple crafted request to index.asp on the web man… Dsl 2875al Firmware after 1.00.05 Fix from $1,9502020-03-19 MEDIUM 5.5 CVE-2020-1753 A security flaw was found in Ansible Engine, all Ansible 2.7.x versions prior to 2.7.17, all Ansible 2.8.x versions prior to 2.8.11 and all Ansible 2… Ansible Engine 2.7.18 / 2.8.11+ Fix from $1,6002020-03-16 MEDIUM 5.3 CVE-2020-10090 GitLab 11.7 through 12.8.1 allows Information Disclosure. Under certain group conditions, group epic information was unintentionally being disclosed. GitLab after 12.8.1 Fix from $1,6002020-03-13 MEDIUM 6.3 CVE-2020-10195 The popup-builder plugin before 3.64.1 for WordPress allows information disclosure and settings modification, leading to in-scope privilege escalatio… Popup Builder 3.64.1+ Fix from $1,6002020-03-13 MEDIUM 6.5 CVE-2019-16157 An information exposure vulnerability in Fortinet FortiWeb 6.2.0 CLI and earlier may allow an authenticated user to view sensitive information being … Fortiweb after 6.2.0 Fix from $1,6002020-03-13 MEDIUM 5.3 CVE-2019-9103 An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB31… Mb3170 Firmware after 4.0 Fix from $1,6002020-03-11 HIGH 7.5 CVE-2020-0062 In Euicc, there is a possible information disclosure due to an included test Certificate. This could lead to remote information disclosure with no ad… Android Mitigation only Fix from $1,9502020-03-10 MEDIUM 5.4 CVE-2020-6178 SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser history or log files, leading to… Enable Now 1911+ Fix from $1,6002020-03-10 MEDIUM 5.0 CVE-2020-0031 In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to display sensitive information to th… Android Mitigation only Fix from $1,6002020-03-10 HIGH 7.5 CVE-2012-1094 JBoss AS 7 prior to 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-contexts list to be mismatched… Jboss Application Server 7.1.1+ Fix from $1,9502020-03-10