Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2012-5828
BlackBerry PlayBook before 2.1 has an Information Disclosure Vulnerability via a Web browser component error
Playbook Firmware
2.1+
MEDIUM 6.5
CVE-2014-9127
Open-School Community Edition 2.2 does not properly restrict access to the export functionality, which allows remote authenticated users to obtain se…
Open School
No fix yet
HIGH 7.5
CVE-2014-7863EPSS 83%
The FailOverHelperServlet (aka FailServlet) servlet in ZOHO ManageEngine Applications Manager before 11.9 build 11912, OpManager 8 through 11.5 build…
Manageengine Applications Manager
after 11.9
MEDIUM 5.3
CVE-2013-3564
The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'd…
Vlc Media Player
2.0.7+
MEDIUM 5.3
CVE-2013-2683EPSS 13%
Cisco Linksys E4200 1.0.05 Build 7 devices contain an Information Disclosure Vulnerability which allows remote attackers to obtain private IP address…
Linksys E4200 Firmware
No fix yet
MEDIUM 6.5
CVE-2012-6341
An Information Disclosure vulnerability exists in the my config file in NEtGEAR WGR614 v7 and v9, which could let a malicious user recover all previo…
Wgr614v9 Firmware
No fix yet
HIGH 7.5
CVE-2013-4166
The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and earlier and Evolution Data Server 3.9.5 and earlier does…
Enterprise Linux Desktop
after 3.9.5
MEDIUM 6.5
CVE-2010-3917
Google Chrome before 3.0 does not properly handle XML documents, which allows remote attackers to obtain sensitive information via a crafted web site.
Chrome
3.0+
HIGH 7.5
CVE-2015-2802EPSS 6%
An Information Disclosure vulnerability exists in HP SiteScope 11.2 and 11.3 on Windows, Linux and Solaris, HP Asset Manager 9.30 through 9.32, 9.40 …
Asset Manager
after 11.24
MEDIUM 5.3
CVE-2019-4562
IBM Security Directory Server 6.4.0 stores sensitive information in URLs. This may lead to information disclosure if unauthorized parties have access…
Security Directory Server
6.4.0.20+
HIGH 7.5
CVE-2013-2676
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresse…
Mfc 9970cdw Firmware
No fix yet
HIGH 7.5
CVE-2011-4937
Joomla! 1.7.1 has core information disclosure due to inadequate error checking.
Joomla\!
1.7.2+
HIGH 7.5
CVE-2013-2674
Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive informati…
Mfc 9970cdw Firmware
No fix yet
HIGH 7.5
CVE-2016-4676
A Cross-origin vulnerability exists in WebKit in Apple Safari before 10.0.1 when processing location attributes, which could let a remote malicious u…
Safari
10.0.1+
MEDIUM 5.3
CVE-2013-2624EPSS 6%
Telean before 1.3.1 contains a full path disclosure vulnerability which could allow remote attackers to obtain sensitive information through a specia…
Telaen
1.3.1+
MEDIUM 5.3
CVE-2013-2631
TinyWebGallery (TWG) 1.8.9 and earlier contains a full path disclosure vulnerability which allows remote attackers to obtain sensitive information th…
Tinywebgallery
after 1.8.9
MEDIUM 5.3
CVE-2014-8328
The default configuration in the Dynamic Content Elements (dce) extension before 0.11.5 for TYPO3 allows remote attackers to obtain sensitive install…
Dynamic Content Elements
0.11.5+
HIGH 7.5
CVE-2011-4088
ABRT might allow attackers to obtain sensitive information from crash reports.
Fedora
Mitigation only
HIGH 7.5
CVE-2019-19550
Remote Authentication Bypass in Senior Rubiweb 6.2.34.28 and 6.2.34.37 allows admin access to sensitive information of affected users using vulnerabl…
Rubiweb
No fix yet
MEDIUM 6.5
CVE-2013-4187
The Flippy module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to nodes, which allows remote authenticated users with the perm…
Flippy
after 7.x-1.2
MEDIUM 5.3
CVE-2013-1631
Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action
Network Management System
2.1.0+
HIGH 7.5
CVE-2013-0291EPSS 16%
NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability
Nextgen Gallery
No fix yet
MEDIUM 5.4
CVE-2020-2103EPSS 7%
Jenkins 2.218 and earlier, LTS 2.204.1 and earlier exposed session identifiers on a user's detail object in the whoAmI diagnostic page.
Jenkins
after 2.218
HIGH 7.5
CVE-2013-1602EPSS 15%
An Information Disclosure vulnerability exists due to insufficient validation of authentication cookies for the RTSP session in D-Link DCS-5635 1.01,…
Dcs 3411 Firmware
No fix yet
MEDIUM 5.3
CVE-2013-1601EPSS 13%
An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LI…
Dcs 3411 Firmware
No fix yet
MEDIUM 5.3
CVE-2013-6455
The CentralAuth extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to obtain usernames via …
Mediawiki
1.19.10 / 1.21.4+
HIGH 7.5
CVE-2019-5470
An information disclosure issue was discovered GitLab versions < 12.1.2, < 12.0.4, and < 11.11.6 in the security dashboard which could result in disc…
GitLab
11.11.6 / 12.0.4+
MEDIUM 5.3
CVE-2019-15578
An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE). The path of a pr…
GitLab
12.1.12 / 12.2.6+
MEDIUM 5.3
CVE-2019-15579
An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE) where the assigne…
GitLab
12.1.12 / 12.2.6+
HIGH 7.5
CVE-2019-15583
An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE). When an issue wa…
GitLab
12.1.12 / 12.2.6+