CVE-2024-23257 – Apple macOS JP2 Image Parsing Uninitialized Pointer Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2024-23257
Processing an image may result in disclosure of process memory. ... This vulnerability allows remote attackers to disclose sensitive information on affected installations of Apple macOS. • http://seclists.org/fulldisclosure/2024/Mar/21 http://seclists.org/fulldisclosure/2024/Mar/22 http://seclists.org/fulldisclosure/2024/Mar/23 http://seclists.org/fulldisclosure/2024/Mar/26 https://support.apple.com/en-us/HT214082 https://support.apple.com/en-us/HT214083 https://support.apple.com/en-us/HT214084 https://support.apple.com/en-us/HT214085 https://support.apple.com/en-us/HT214087 •
CVE-2024-26309
https://notcve.org/view.php?id=CVE-2024-26309
Archer Platform 6.x before 6.14 P2 HF2 (6.14.0.2.2) contains a sensitive information disclosure vulnerability. An unauthenticated attacker could potentially obtain access to sensitive information via an internal URL. • https://archerirm.com https://www.archerirm.community/t5/platform-announcements/archer-update-for-multiple-vulnerabilities/ta-p/717102 •
CVE-2023-46170 – IBM DS8900F information disclosure
https://notcve.org/view.php?id=CVE-2023-46170
IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to arbitrarily read files after enumerating file names. IBM X-Force ID: 269407. IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0 y 89.33.48.0 podrían permitir a un usuario autenticado leer archivos arbitrariamente después de enumerar los nombres de los archivos. ID de IBM X-Force: 269407. IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to arbitrarily read files after enumerating file names. • https://exchange.xforce.ibmcloud.com/vulnerabilities/269407 https://www.ibm.com/support/pages/node/7130084 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-204: Observable Response Discrepancy •
CVE-2023-46171 – IBM DS8900F information disclosure
https://notcve.org/view.php?id=CVE-2023-46171
IBM DS8900F HMC 89.21.19.0, 89.21.31.0, 89.30.68.0, 89.32.40.0, and 89.33.48.0 could allow an authenticated user to view sensitive log information after enumerating filenames. • https://exchange.xforce.ibmcloud.com/vulnerabilities/269408 https://www.ibm.com/support/pages/node/7130084 • CWE-532: Insertion of Sensitive Information into Log File •
CVE-2023-42509 – JFrog Artifactory Sensitive Data Leakage in Repository configuration process
https://notcve.org/view.php?id=CVE-2023-42509
JFrog Artifactory later than version 7.17.4 but prior to version 7.77.0 is vulnerable to an issue whereby a sequence of improperly handled exceptions in repository configuration initialization steps may lead to exposure of sensitive data. JFrog Artifactory posterior a la versión 7.17.4 pero anterior a la versión 7.77.0 es vulnerable a un problema por el cual una secuencia de excepciones manejadas incorrectamente en los pasos de inicialización de la configuración del repositorio puede provocar la exposición de datos confidenciales. • https://jfrog.com/help/r/jfrog-release-information/jfrog-security-advisories • CWE-755: Improper Handling of Exceptional Conditions •