CWE-200

High likelihood

Exposure of Sensitive Information to an Unauthorized Actor

Parent: CWE-668 - Exposure of Resource to Wrong Sphere

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

10,178 vulnerabilities with CWE-200
CVE-2016-9384 MEDIUM
Xen 4.7 - Exposure of Sensitive Host Information via 32-bit ELF Symbol Table
CVSS 6.5
CVE-2016-9314 HIGH
Trend Micro IWSVA <6.5-SP2_Build_Linux_1707 - Info Disclosure
CVSS 7.8
CVE-2016-6249 MEDIUM
F5 BIG-IP <12.0.0, 11.6.1 - Info Disclosure
CVSS 5.3
CVE-2016-7765 LOW
iPhone OS < 10.2 - Unauthorized Clipboard Information Exposure in Lockscreen State
CVSS 2.4
CVE-2016-7761 MEDIUM
macOS < 10.12.2 - Unauthorized Sensitive Network-Configuration Information Exposure via WiFi Global Storage
CVSS 5.5
CVE-2016-7759 MEDIUM
iPhone OS < 9.3.5 - Unauthorized Sensitive Information Exposure via Task Switcher Snapshots
CVSS 4.3
CVE-2016-7714 LOW
iPhone OS < 10.2, macOS < 10.12.2, watchOS < 3.1.3 - Unauthorized Kernel Memory Exposure via IOKit
CVSS 3.3
CVE-2016-7666 MEDIUM
Transporter < 1.9.1 - Exposure of Sensitive Information via Crafted EPUB
CVSS 5.5
CVE-2016-7664 LOW
iPhone OS < 10.2 - Unauthorized Sensitive Information Exposure via Lockscreen Accessibility Options
CVSS 2.4
CVE-2016-7653 LOW
iPhone OS < 10.2 - Unauthorized Sensitive Information Exposure via Media Player Lockscreen Access
CVSS 2.4
CVE-2016-7634 MEDIUM
iPhone OS < 10.2 - Unauthorized Exposure of Sensitive Information via Accessibility Spoken Password
CVSS 4.6
CVE-2016-7625 LOW
macOS < 10.12.2 - Unauthorized Sensitive Kernel Memory Exposure via IOKit
CVSS 3.3
CVE-2016-7624 LOW
macOS < 10.12.2 - Kernel Memory Layout Information Disclosure via IOAcceleratorFamily
CVSS 3.3
CVE-2016-7623 MEDIUM
Apple Iphone OS < 10.1.1 - Information Disclosure
CVSS 6.5
CVE-2016-7620 LOW
macOS < 10.12.2 - Kernel Memory Layout Exposure via IOSurface
CVSS 3.3
CVE-2016-7614 MEDIUM
iCloud < 6.1 - Unauthorized Sensitive Information Exposure via Windows Security Component
CVSS 5.5
CVE-2016-7608 MEDIUM
macOS < 10.12.2 - Unauthorized Kernel Memory Exposure via IOFireWireFamily
CVSS 5.5
CVE-2016-7607 MEDIUM
iPhone OS < 10.2, macOS < 10.12.2, watchOS < 3.1.3 - Kernel Memory Information Disclosure via Crafted App
CVSS 5.5
CVE-2016-7600 MEDIUM
macOS < 10.12.2 - Unauthorized Sensitive Information Exposure via OpenPAM Mishandling
CVSS 6.2
CVE-2016-7599 MEDIUM
iPhone OS < 10.2, iCloud < 6.1, iTunes < 12.5.4, Safari < 10.0.2 - Same Origin Policy Bypass
CVSS 6.5
CVE-2016-7598 MEDIUM
Apple Iphone OS < 10.1.1 - Information Disclosure
CVSS 6.5
CVE-2016-7592 MEDIUM
iPhone OS < 10.2, Safari < 10.0.2, iCloud < 6.1, iTunes < 12.5.4 - Information Disclosure via WebKit JavaScript Prompts
CVSS 4.3
CVE-2016-7586 MEDIUM
Apple Iphone OS < 10.1.1 - Information Disclosure
CVSS 6.5
CVE-2016-7579 MEDIUM
iPhone OS < 10.1, macOS < 10.12.1, tvOS < 10.0.1 - Sensitive Information Exposure via CFNetwork Proxies
CVSS 5.9
CVE-2016-7577 LOW
iPhone OS < 10.1 and macOS < 10.12.1 - Unauthorized Audio Data Exposure via FaceTime
CVSS 3.7
Details
Vulnerabilities 10,178
Exploit Likelihood High