Page 363 of 10611 results (0.043 seconds)

CVSS: 7.5EPSS: 0%CPEs: 10EXPL: 0

Sensitive information disclosure due to cleartext storage of sensitive information in memory. • https://security-advisory.acronis.com/advisories/SEC-1994 • CWE-312: Cleartext Storage of Sensitive Information CWE-316: Cleartext Storage of Sensitive Information in Memory •

CVSS: 9.1EPSS: 0%CPEs: 10EXPL: 0

Sensitive information disclosure and manipulation due to improper authentication. • https://security-advisory.acronis.com/advisories/SEC-1908 • CWE-287: Improper Authentication CWE-306: Missing Authentication for Critical Function •

CVSS: 3.7EPSS: 0%CPEs: 1EXPL: 0

Exim NTLM Challenge Out-Of-Bounds Read Information Disclosure Vulnerability. ... The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated data structure. ... Exim NTLM Challenge Out-Of-Bounds Read Information Disclosure Vulnerability. ... The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated data structure. ... The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated data structure. • https://www.zerodayinitiative.com/advisories/ZDI-23-1468 • CWE-125: Out-of-bounds Read •

CVSS: 3.1EPSS: 0%CPEs: -EXPL: 0

Exim dnsdb Out-Of-Bounds Read Information Disclosure Vulnerability. ... The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. ... Exim dnsdb Out-Of-Bounds Read Information Disclosure Vulnerability. ... The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. ... The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. • https://www.zerodayinitiative.com/advisories/ZDI-23-1473 • CWE-125: Out-of-bounds Read •

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 1

This can allow unauthenticated attackers to extract sensitive data including uploaded resumes and job applications if Directory Listing is enabled on the server. • https://wpscan.com/vulnerability/882f6c36-44c6-4273-81cd-2eaaf5e81fa7 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-552: Files or Directories Accessible to External Parties •