CWE-497
Exposure of Sensitive System Information to an Unauthorized Control Sphere
The product does not properly prevent sensitive system-level information from being accessed by unauthorized actors who do not have the same level of access to the underlying system as the product does.
368 vulnerabilities with CWE-497
CVE-2022-20734
MEDIUM
Cisco SD-WAN vManage Software - Info Disclosure
CVSS 4.4
CVE-2022-28651
HIGH
JetBrains IntelliJ IDEA <2021.3.3 - Info Disclosure
CVSS 8.4
CVE-2021-1234
MEDIUM
Cisco SD-WAN vManage - Info Disclosure
CVSS 5.3
CVE-2021-0291
MEDIUM
Juniper Networks Junos OS/Junos OS Evolved - Info Disclosure
CVSS 6.5
CVE-2021-31955
MEDIUM
KEV
Windows 10 1809-21H1 and Windows Server 2019-20H2 - Kernel Information Disclosure
CVSS 5.5
CVE-2021-1544
MEDIUM
Cisco Webex Meetings - Info Disclosure
CVSS 5.5
CVE-2021-23135
MEDIUM
Argo CD <1.8.7, <1.7.14 - Info Disclosure
CVSS 5.9
CVE-2021-1535
MEDIUM
Cisco SD-WAN vManage - Info Disclosure
CVSS 5.3
CVE-2021-0260
HIGH
Juniper Networks Junos OS <17.3R3-S9 - Info Disclosure
CVSS 7.3
CVE-2021-1235
MEDIUM
Cisco SD-WAN vManage Software - Info Disclosure
CVSS 5.5
CVE-2020-36926
HIGH
SmarterTrack 7922 - Info Disclosure
CVSS 7.5
CVE-2020-36922
HIGH
Sony BRAVIA Digital Signage <1.7.8 - Info Disclosure
CVSS 7.5
CVE-2020-25179
CRITICAL
Gehealthcare 3.0t Signa Hdxt Firmware - Information Disclosure
CVSS 9.8
CVE-2020-26076
HIGH
Cisco IoT Field Network Director < 4.6.1 - Sensitive Database Information Exposure
CVSS 7.5
CVE-2019-25230
MEDIUM
Kentico Xperience - Info Disclosure
CVSS 4.3
CVE-2019-25228
MEDIUM
Kentico Xperience - Info Disclosure
CVSS 5.3
CVE-2019-10243
MEDIUM
Eclipse Kura < 4.0.0 - Sensitive Information Exposure via Web Server Version Disclosure
CVSS 5.3
CVE-2018-25358
HIGH
D-Link DIR601 2.02NA Credential Disclosure via my_cgi.cgi
CVSS 7.5
Details
Vulnerabilities
368