CVE-2023-4177 – EmpowerID Multi-Factor Authentication Code information disclosure
https://notcve.org/view.php?id=CVE-2023-4177
The manipulation leads to information disclosure. ... Durch Beeinflussen mit unbekannten Daten kann eine information disclosure-Schwachstelle ausgenutzt werden. • https://seclists.org/fulldisclosure/2023/Aug/3 https://vuldb.com/?ctiid.236213 https://vuldb.com/?id.236213 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-345: Insufficient Verification of Data Authenticity •
CVE-2023-4168 – Templatecookie Adlisting Redirect ad-list information disclosure
https://notcve.org/view.php?id=CVE-2023-4168
The manipulation leads to information disclosure. ... Durch die Manipulation mit unbekannten Daten kann eine information disclosure-Schwachstelle ausgenutzt werden. ... Adlisting Classified Ads version 2.14.0 suffers from an information leakage vulnerability. • https://www.exploit-db.com/exploits/51667 http://packetstormsecurity.com/files/174015/Adlisting-Classified-Ads-2.14.0-Information-Disclosure.html https://vuldb.com/?ctiid.236184 https://vuldb.com/?id.236184 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2023-4135 – Out-of-bounds read information disclosure vulnerability
https://notcve.org/view.php?id=CVE-2023-4135
The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. ... The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. • https://access.redhat.com/security/cve/CVE-2023-4135 https://bugzilla.redhat.com/show_bug.cgi?id=2229101 https://security.netapp.com/advisory/ntap-20230915-0012 https://www.zerodayinitiative.com/advisories/ZDI-CAN-21521 • CWE-125: Out-of-bounds Read •
CVE-2023-34038
https://notcve.org/view.php?id=CVE-2023-34038
VMware Horizon Server contains an information disclosure vulnerability. • https://www.vmware.com/security/advisories/VMSA-2023-0017.html •
CVE-2023-39465 – Triangle MicroWorks SCADA Data Gateway Use of Hard-coded Cryptograhic Key Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2023-39465
Triangle MicroWorks SCADA Data Gateway Use of Hard-coded Cryptograhic Key Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Triangle MicroWorks SCADA Data Gateway. ... Triangle MicroWorks SCADA Data Gateway Uso de vulnerabilidad de divulgación de información clave criptográfica codificada. Esta vulnerabilidad permite a atacantes remotos revelar información confidencial sobre las instalaciones afectadas de Triangle MicroWorks SCADA Data Gateway. ... This vulnerability allows remote attackers to disclose sensitive information on affected installations of Triangle MicroWorks SCADA Data Gateway. • https://www.trianglemicroworks.com/products/scada-data-gateway/what's-new https://www.zerodayinitiative.com/advisories/ZDI-23-1033 • CWE-321: Use of Hard-coded Cryptographic Key •