Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
MEDIUM 6.5 CVE-2012-5828 BlackBerry PlayBook before 2.1 has an Information Disclosure Vulnerability via a Web browser component error Playbook Firmware 2.1+ Fix from $1,6002020-02-10 MEDIUM 6.5 CVE-2014-9127 Open-School Community Edition 2.2 does not properly restrict access to the export functionality, which allows remote authenticated users to obtain se… Open School No fix yet Fix from $1,6002020-02-08 HIGH 7.5 CVE-2014-7863EPSS 83% The FailOverHelperServlet (aka FailServlet) servlet in ZOHO ManageEngine Applications Manager before 11.9 build 11912, OpManager 8 through 11.5 build… Manageengine Applications Manager after 11.9 Fix from $1,9502020-02-08 MEDIUM 5.3 CVE-2013-3564 The web interface in VideoLAN VLC media player before 2.0.7 has no access control which allows remote attackers to view directory listings via the 'd… Vlc Media Player 2.0.7+ Fix from $1,6002020-02-06 MEDIUM 5.3 CVE-2013-2683EPSS 13% Cisco Linksys E4200 1.0.05 Build 7 devices contain an Information Disclosure Vulnerability which allows remote attackers to obtain private IP address… Linksys E4200 Firmware No fix yet Fix from $1,6002020-02-06 MEDIUM 6.5 CVE-2012-6341 An Information Disclosure vulnerability exists in the my config file in NEtGEAR WGR614 v7 and v9, which could let a malicious user recover all previo… Wgr614v9 Firmware No fix yet Fix from $1,6002020-02-06 HIGH 7.5 CVE-2013-4166 The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and earlier and Evolution Data Server 3.9.5 and earlier does… Enterprise Linux Desktop after 3.9.5 Fix from $1,9502020-02-06 MEDIUM 6.5 CVE-2010-3917 Google Chrome before 3.0 does not properly handle XML documents, which allows remote attackers to obtain sensitive information via a crafted web site. Chrome 3.0+ Fix from $1,6002020-02-06 HIGH 7.5 CVE-2015-2802EPSS 6% An Information Disclosure vulnerability exists in HP SiteScope 11.2 and 11.3 on Windows, Linux and Solaris, HP Asset Manager 9.30 through 9.32, 9.40 … Asset Manager after 11.24 Fix from $1,9502020-02-04 MEDIUM 5.3 CVE-2019-4562 IBM Security Directory Server 6.4.0 stores sensitive information in URLs. This may lead to information disclosure if unauthorized parties have access… Security Directory Server 6.4.0.20+ Fix from $1,6002020-02-04 HIGH 7.5 CVE-2013-2676 Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view private IP addresse… Mfc 9970cdw Firmware No fix yet Fix from $1,9502020-02-04 HIGH 7.5 CVE-2011-4937 Joomla! 1.7.1 has core information disclosure due to inadequate error checking. Joomla\! 1.7.2+ Fix from $1,9502020-02-04 HIGH 7.5 CVE-2013-2674 Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive informati… Mfc 9970cdw Firmware No fix yet Fix from $1,9502020-02-03 HIGH 7.5 CVE-2016-4676 A Cross-origin vulnerability exists in WebKit in Apple Safari before 10.0.1 when processing location attributes, which could let a remote malicious u… Safari 10.0.1+ Fix from $1,9502020-02-03 MEDIUM 5.3 CVE-2013-2624EPSS 6% Telean before 1.3.1 contains a full path disclosure vulnerability which could allow remote attackers to obtain sensitive information through a specia… Telaen 1.3.1+ Fix from $1,6002020-02-03 MEDIUM 5.3 CVE-2013-2631 TinyWebGallery (TWG) 1.8.9 and earlier contains a full path disclosure vulnerability which allows remote attackers to obtain sensitive information th… Tinywebgallery after 1.8.9 Fix from $1,6002020-02-03 MEDIUM 5.3 CVE-2014-8328 The default configuration in the Dynamic Content Elements (dce) extension before 0.11.5 for TYPO3 allows remote attackers to obtain sensitive install… Dynamic Content Elements 0.11.5+ Fix from $1,6002020-02-03 HIGH 7.5 CVE-2011-4088 ABRT might allow attackers to obtain sensitive information from crash reports. Fedora Mitigation only Fix from $1,9502020-01-31 HIGH 7.5 CVE-2019-19550 Remote Authentication Bypass in Senior Rubiweb 6.2.34.28 and 6.2.34.37 allows admin access to sensitive information of affected users using vulnerabl… Rubiweb No fix yet Fix from $1,9502020-01-31 MEDIUM 6.5 CVE-2013-4187 The Flippy module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to nodes, which allows remote authenticated users with the perm… Flippy after 7.x-1.2 Fix from $1,6002020-01-30 MEDIUM 5.3 CVE-2013-1631 Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action Network Management System 2.1.0+ Fix from $1,6002020-01-30 HIGH 7.5 CVE-2013-0291EPSS 16% NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability Nextgen Gallery No fix yet Fix from $1,9502020-01-30 MEDIUM 5.4 CVE-2020-2103EPSS 7% Jenkins 2.218 and earlier, LTS 2.204.1 and earlier exposed session identifiers on a user's detail object in the whoAmI diagnostic page. Jenkins after 2.218 Fix from $1,6002020-01-29 HIGH 7.5 CVE-2013-1602EPSS 15% An Information Disclosure vulnerability exists due to insufficient validation of authentication cookies for the RTSP session in D-Link DCS-5635 1.01,… Dcs 3411 Firmware No fix yet Fix from $1,9502020-01-28 MEDIUM 5.3 CVE-2013-1601EPSS 13% An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LI… Dcs 3411 Firmware No fix yet Fix from $1,6002020-01-28 MEDIUM 5.3 CVE-2013-6455 The CentralAuth extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to obtain usernames via … Mediawiki 1.19.10 / 1.21.4+ Fix from $1,6002020-01-28 HIGH 7.5 CVE-2019-5470 An information disclosure issue was discovered GitLab versions < 12.1.2, < 12.0.4, and < 11.11.6 in the security dashboard which could result in disc… GitLab 11.11.6 / 12.0.4+ Fix from $1,9502020-01-28 MEDIUM 5.3 CVE-2019-15578 An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE). The path of a pr… GitLab 12.1.12 / 12.2.6+ Fix from $1,6002020-01-28 MEDIUM 5.3 CVE-2019-15579 An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE) where the assigne… GitLab 12.1.12 / 12.2.6+ Fix from $1,6002020-01-28 HIGH 7.5 CVE-2019-15583 An information disclosure exists in < 12.3.2, < 12.2.6, and < 12.1.12 for GitLab Community Edition (CE) and Enterprise Edition (EE). When an issue wa… GitLab 12.1.12 / 12.2.6+ Fix from $1,9502020-01-28