
CVE-2024-0045
https://notcve.org/view.php?id=CVE-2024-0045
11 Mar 2024 — This could lead to remote (proximal/adjacent) information disclosure with no additional execution privileges needed. • https://android.googlesource.com/platform/packages/modules/Bluetooth/+/7d0f696f450241d8ba7a168ba14fa7b75032f0c9 • CWE-20: Improper Input Validation •

CVE-2024-28089
https://notcve.org/view.php?id=CVE-2024-28089
09 Mar 2024 — This can cause a denial of service or lead to information disclosure. • https://github.com/actuator/cve/blob/main/Hitron/CVE-2024-28089 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVE-2024-23286 – Apple macOS CoreGraphics Image Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-23286
08 Mar 2024 — This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. • http://seclists.org/fulldisclosure/2024/Mar/21 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVE-2024-23264 – Apple macOS Metal Framework PVR File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-23264
08 Mar 2024 — This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. • http://seclists.org/fulldisclosure/2024/Mar/21 • CWE-125: Out-of-bounds Read •

CVE-2024-23257 – Apple macOS JP2 Image Parsing Uninitialized Pointer Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-23257
08 Mar 2024 — Processing an image may result in disclosure of process memory. ... This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. • http://seclists.org/fulldisclosure/2024/Mar/21 •

CVE-2024-26309
https://notcve.org/view.php?id=CVE-2024-26309
08 Mar 2024 — Archer Platform 6.x before 6.14 P2 HF2 (6.14.0.2.2) contains a sensitive information disclosure vulnerability. An unauthenticated attacker could potentially obtain access to sensitive information via an internal URL. • https://archerirm.com •

CVE-2023-46170 – IBM DS8900F information disclosure
https://notcve.org/view.php?id=CVE-2023-46170
07 Mar 2024 — IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to arbitrarily read files after enumerating file names. IBM X-Force ID: 269407. IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0 y 89.33.48.0 podrían permitir a un usuario autenticado leer archivos arbitrariamente después de enumerar los nombres de los archivos. ID de IBM X-Force: 269407. IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an a... • https://exchange.xforce.ibmcloud.com/vulnerabilities/269407 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-204: Observable Response Discrepancy •

CVE-2023-46171 – IBM DS8900F information disclosure
https://notcve.org/view.php?id=CVE-2023-46171
07 Mar 2024 — IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to view sensitive log information after enumerating filenames. • https://exchange.xforce.ibmcloud.com/vulnerabilities/269408 • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2023-42509 – JFrog Artifactory Sensitive Data Leakage in Repository configuration process
https://notcve.org/view.php?id=CVE-2023-42509
07 Mar 2024 — JFrog Artifactory later than version 7.17.4 but prior to version 7.77.0 is vulnerable to an issue whereby a sequence of improperly handled exceptions in repository configuration initialization steps may lead to exposure of sensitive data. JFrog Artifactory posterior a la versión 7.17.4 pero anterior a la versión 7.77.0 es vulnerable a un problema por el cual una secuencia de excepciones manejadas incorrectamente en los pasos de inicialización de la configuración del repositorio puede provocar la exposición ... • https://jfrog.com/help/r/jfrog-release-information/jfrog-security-advisories • CWE-755: Improper Handling of Exceptional Conditions •

CVE-2024-22256
https://notcve.org/view.php?id=CVE-2024-22256
07 Mar 2024 — VMware Cloud Director contains a partial information disclosure vulnerability. A malicious actor can potentially gather information about organization names based on the behavior of the instance. ... VMware Cloud Director contains a partial information disclosure vulnerability. A malicious actor can potentially gather information about organization names based on the behavior of the instance. • https://www.vmware.com/security/advisories/VMSA-2024-0007.html •