CWE-598
Use of HTTP Request With Sensitive Query String
The web application uses an HTTP method to process a request, but the request includes sensitive information in the query string.
80 vulnerabilities with CWE-598
CVE-2018-14822
CRITICAL
Entes EMG12 <2.57 - Info Disclosure
CVSS 9.8
CVE-2018-5467
MEDIUM
Belden Hirschmann - Info Disclosure
CVSS 6.5
CVE-2017-9280
MEDIUM
NetIQ Identity Manager <4.5.6.1 - Info Disclosure
CVSS 4.3
CVE-2017-3185
CRITICAL
ACTi D, B, I, and E series cameras >=A1D-500-V6.11.31-AC - Exposure of Sensitive Information via GET Requests
CVSS 9.8
CVE-2017-8443
MEDIUM
Kibana X-Pack Security < 5.4.3 - Unauthenticated Credential Exposure via Crafted Login URL
CVSS 6.5
Details
Vulnerabilities
80