CVE-2024-0872 – Watu Quiz <= 3.4.1 - Sensitive Information Disclosure
https://notcve.org/view.php?id=CVE-2024-0872
The Watu Quiz plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.4.1 via the watu-userinfo shortcode. • https://plugins.trac.wordpress.org/changeset/3036986 https://www.wordfence.com/threat-intel/vulnerabilities/id/acc261eb-fafa-4e9d-b7ab-a449f14a7638?source=cve • CWE-639: Authorization Bypass Through User-Controlled Key •
CVE-2024-31419 – Cnv: information disclosure through the usage of vm-dump-metrics
https://notcve.org/view.php?id=CVE-2024-31419
An information disclosure flaw was found in OpenShift Virtualization. • https://access.redhat.com/security/cve/CVE-2024-31419 https://bugzilla.redhat.com/show_bug.cgi?id=2272948 • CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere •
CVE-2023-38729 – IBM Db2 for Linux, UNIX and Windows information disclosure
https://notcve.org/view.php?id=CVE-2023-38729
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server)10.5, 11.1, and 11.5 is vulnerable to sensitive information disclosure when using ADMIN_CMD with IMPORT or EXPORT. • https://https://exchange.xforce.ibmcloud.com/vulnerabilities/262259 https://security.netapp.com/advisory/ntap-20240517-0004 https://www.ibm.com/support/pages/node/7145721 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2024-28782 – IBM QRadar Suite Software information disclosure
https://notcve.org/view.php?id=CVE-2024-28782
IBM QRadar Suite Software 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 stores user credentials in plain clear text which can be read by an authenticated user. IBM X-Force ID: 285698. IBM QRadar Suite Software 1.10.12.0 a 1.10.18.0 e IBM Cloud Pak for Security 1.10.0.0 a 1.10.11.0 almacenan las credenciales de usuario en texto sin formato que puede ser leído por un usuario autenticado. ID de IBM X-Force: 285698. • https://exchange.xforce.ibmcloud.com/vulnerabilities/285698 https://www.ibm.com/support/pages/node/7145683 • CWE-256: Plaintext Storage of a Password •
CVE-2024-30570
https://notcve.org/view.php?id=CVE-2024-30570
An information leak in debuginfo.htm of Netgear R6850 v1.1.0.88 allows attackers to obtain sensitive information without any authentication required. • https://github.com/funny-mud-peee/IoT-vuls/blob/main/netgear%20R6850/Info%20Leak%20in%20Netgear-R6850%EF%BC%88debuginfo.htm%EF%BC%89.md https://www.netgear.com/about/security • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •