CWE-497

Exposure of Sensitive System Information to an Unauthorized Control Sphere

Parent: CWE-200 - Exposure of Sensitive Information to an Unauthorized Actor

The product does not properly prevent sensitive system-level information from being accessed by unauthorized actors who do not have the same level of access to the underlying system as the product does.

311 vulnerabilities with CWE-497
CVE-2024-40706 MEDIUM
IBM InfoSphere Information Server 11.7 - Info Disclosure
CVSS 5.3
CVE-2024-53683 MEDIUM
IPA - Info Disclosure
CVSS 4.4
CVE-2024-11029 MEDIUM
FreeIPA - Info Disclosure
CVSS 5.5
CVE-2024-45640 MEDIUM
IBM Security ReaQta <3.12 - Info Disclosure
CVSS 5.3
CVE-2024-52367 MEDIUM
IBM Concert Software <1.0.4 - Info Disclosure
CVSS 5.3
CVE-2024-12993 MEDIUM
Infinix Mobile - Info Disclosure
CVE-2024-52321 MEDIUM
SHARP Router - Auth Bypass
CVSS 5.9
CVE-2024-54279 HIGH
WP-NERD Toolkit - Info Disclosure
CVSS 7.5
CVE-2024-32732 MEDIUM
SAP BusinessObjects - Info Disclosure
CVSS 5.3
CVE-2024-53814 MEDIUM
Analytify <5.4.3 - Info Disclosure
CVSS 6.5
CVE-2024-53867 MEDIUM
Synapse <1.120.0 - Info Disclosure
CVSS 4.3
CVE-2024-25035 MEDIUM
IBM Cognos Controller <11.0.2 - Info Disclosure
CVSS 5.3
CVE-2024-53768 MEDIUM
IDE Interactive Content Audit Exporter <1.1 - Info Disclosure
CVSS 5.3
CVE-2024-22037 MEDIUM
uyuni-server-attestation - Info Disclosure
CVSS 5.5
CVE-2024-10240 MEDIUM
GitLab EE <17.3.7-17.5.2 - Info Disclosure
CVSS 5.3
CVE-2024-9929 MEDIUM
NSD570 - Info Disclosure
CVSS 4.3
CVE-2024-41781 MEDIUM
IBM PowerVM Hypervisor - Info Disclosure
CVSS 5.1
CVE-2024-52033 MEDIUM
Rakuten Turbo 5G <V1.3.18 - Info Disclosure
CVSS 5.3
CVE-2024-37070 MEDIUM
IBM Concert Software <1.0.3 - Info Disclosure
CVSS 4.3
CVE-2024-52582 MEDIUM
Cachi2 <0.14.0 - Info Disclosure
CVSS 4.7
CVE-2024-36509 MEDIUM
FortiWeb <7.6.0 - Info Disclosure
CVSS 4.2
CVE-2024-47799 LOW
Mesh Wi-Fi router RP562B <v1.0.2 - Info Disclosure
CVSS 3.5
CVE-2024-50528 HIGH
Stacks Mobile App Builder <5.2.3 - Info Disclosure
CVSS 7.5
CVE-2024-50425 MEDIUM
Veribo - Info Disclosure
CVSS 6.5
CVE-2024-48024 HIGH
Fahad Mahmood Keep Backup Daily <2.0.7 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 311