İçeriğe atla
Noroxi

CWE-213 · 32 kayıt

Exposure of Sensitive Information Due to Incompatible Policies

Bu sınıftaki CVE’ler

32 kayıt

  • CVE-2020-1652
    39İzleyin

    Junos Space: OpenNMS is accessible via port 9443

    KritikCVSS 9,8İstismar yokEPSS %1

    opennms · opennms17 Tem 2020

  • CVE-2023-3441
    36İzleyin

    Exposure of Sensitive Information Due to Incompatible Policies in GitLab

    KritikCVSS 9,1İstismar yokEPSS %1

    gitlab · gitlab1 Eki 2024

  • Univention Corporate Server univention-directory-notifier 12.0.1-3 and earlier is affected by: CWE-213: Intentional Information Exposure.

    YüksekCVSS 7,5İstismar yokEPSS %1

    univention · univention corporate server17 Tem 2019

  • CVE-2022-30350
    30İzleyin

    Avanquest Software RAD PDF (PDFEscape Online) 3.19.2.2 is vulnerable to Information Leak / Disclosure.

    YüksekCVSS 7,5İstismar yokEPSS %1

    avanquest · pdfescape30 Mar 2023

  • CVE-2023-6517
    30İzleyin

    Seeing the SMS Verification Code in Mia Technology's Mia-Med

    YüksekCVSS 7,5İstismar yokEPSS %0

    miateknoloji · mia-med8 Şub 2024

  • CVE-2024-49354
    30İzleyin

    IBM Concert information disclosure

    YüksekCVSS 7,5İstismar yokEPSS %0

    ibm · concert18 Oca 2025

  • CVE-2024-49827
    30İzleyin

    IBM Concert Software information disclosure

    YüksekCVSS 7,5İstismar yokEPSS %0

    ibm · concert18 Ağu 2025

  • CVE-2024-7267
    28İzleyin

    Internal infrastructure data leak in EZD RP

    YüksekCVSS 7,1İstismar yokEPSS %1

    nask · ezd rp7 Ağu 2024

  • CVE-2025-24316
    27İzleyin

    Dario Health USB-C Blood Glucose Monitoring System Starter Kit Android Application Exposure of Sensitive Information Due to Incompatible Policies

    OrtaCVSS 6,9İstismar yokEPSS %0

    dario health · dario application database and internet-based server infrastructure28 Şub 2025

  • CVE-2025-54831
    26İzleyin

    Apache Airflow: Connection sensitive details exposed to users with READ permissions

    OrtaCVSS 6,5İstismar yokEPSS %1

    apache · airflow26 Eyl 2025

  • CVE-2022-22541
    26İzleyin

    SAP BusinessObjects Business Intelligence Platform - versions 420, 430, may allow legitimate users to access information they shouldn't see

    OrtaCVSS 6,5İstismar yokEPSS %1

    sap · businessobjects business intelligence platform12 Nis 2022

  • CVE-2026-6280
    26İzleyin

    Improper Access Control in Nomysoft Informatics' Nomysem

    OrtaCVSS 6,5İstismar yokEPSS %0

    nomysoft informatics education and consulting inc. · nomysem8 Tem 2026

  • CVE-2019-10247
    23İzleyin

    In Eclipse Jetty version 7.x, 8.x, 9.2.27 and older, 9.3.26 and older, and 9.4.16 and older, the server running on any OS and Jetty version

    OrtaCVSS 5,3İstismar yokEPSS %6

    eclipse · jetty22 Nis 2019

  • CVE-2019-10246
    22İzleyin

    In Eclipse Jetty version 9.2.27, 9.3.26, and 9.4.16, the server running on Windows is vulnerable to exposure of the fully qualified Base Res

    OrtaCVSS 5,3İstismar yokEPSS %4

    eclipse · jetty22 Nis 2019

  • CVE-2017-3211
    21İzleyin

    Centire Yopify leaks customer information

    OrtaCVSS 5,3İstismar yokEPSS %1

    yopify · yopify15 Oca 2020

  • CVE-2023-40570
    21İzleyin

    Datasette 1.0 alpha series leaks names of databases and tables to unauthenticated users

    OrtaCVSS 5,3İstismar yokEPSS %1

    datasette · datasette24 Ağu 2023

  • CVE-2023-36919
    21İzleyin

    Information Disclosure in SAP Enable Now

    OrtaCVSS 5,3İstismar yokEPSS %0

    sap · enable now10 Tem 2023

  • CVE-2025-4976
    21İzleyin

    Exposure of Sensitive Information Due to Incompatible Policies in GitLab

    OrtaCVSS 5,3İstismar yokEPSS %0

    gitlab · gitlab24 Tem 2025

  • CVE-2026-55425
    20İzleyin

    Graylog: System Catalog titles endpoint can be used to retrieve values of protected database fields

    OrtaCVSS 5,0İstismar yokEPSS %0

    graylog2 · graylog2-server28 Ağu 2026

  • CVE-2023-27465
    18İzleyin

    A vulnerability has been identified in SIMOTION C240 (All versions >= V5.4 < V5.5 SP1), SIMOTION C240 PN (All versions >= V5.4 < V5.5 SP1),

    OrtaCVSS 4,6İstismar yokEPSS %0

    siemens · simotion d425-2 dp firmware13 Haz 2023

  • CVE-2024-44121
    17İzleyin

    Information Disclosure in SAP S/4 HANA (Statutory Reports)

    OrtaCVSS 4,3İstismar yokEPSS %0

    sap_se · sap s/4 hana (statutory reports)10 Eyl 2024

  • CVE-2025-32791
    17İzleyin

    Permission policy information leakage in Backstage permission system

    OrtaCVSS 4,3İstismar yokEPSS %0

    backstage · backstage16 Nis 2025

  • CVE-2023-5117
    14İzleyin

    Exposure of Sensitive Information Due to Incompatible Policies in GitLab

    DüşükCVSS 3,7İstismar yokEPSS %0

    gitlab · gitlab25 Ara 2024

  • CVE-2026-56538
    14İzleyin

    HCL Connections is vulnerable to information disclosure

    DüşükCVSS 3,5İstismar yokEPSS %0

    hcltech · connections27 Tem 2026

  • CVE-2025-52603
    14İzleyin

    HCL Connections is vulnerable to information disclosure

    DüşükCVSS 3,5İstismar yokEPSS %0

    hcltech · connections20 Şub 2026

Tüm zafiyet sınıfları