Falhas do tipo CWE-200
3.909 resultadosCVE-2021-36091LOWUnautorized access to the calendar appointmentsEPSS 0.7%CVE-2024-47532HIGHRestrictedPython information leakage via `AttributeError.obj` and the `string` moduleEPSS 0.7%CVE-2023-38846—An issue in Marbre Lapin Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request.EPSS 0.7%CVE-2023-38847—An issue in CHRISTINA JAPAN Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request.EPSS 0.7%CVE-2023-38845—An issue in Anglaise Company Anglaise.Company v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request.EPSS 0.7%CVE-2023-38849HIGHAn issue in tire-sales Line v.13.6.1 allows a remote attacker to obtain sensitive information via crafted GET request.EPSS 0.7%CVE-2020-7269MEDIUMSensitive Information Exposure in McAfee ATDEPSS 0.7%CVE-2023-26533MEDIUMWordPress Zippy Plugin <= 1.6.1 is vulnerable to Sensitive Data ExposureEPSS 0.7%CVE-2022-22277—A vulnerability in SonicOS SNMP service resulting exposure of Wireless Access Point sensitive information in cleartext.EPSS 0.7%CVE-2023-0659MEDIUMBDCOM 1704-WGL Backup File param.file.tgz information disclosureEPSS 0.7%CVE-2022-22276—A vulnerability in SonicOS SNMP service resulting exposure of sensitive information to an unauthorized user.EPSS 0.7%CVE-2022-29916MEDIUMFirefox behaved slightly differently for already known resources when loading CSS resources involving CSS variables. This could have been usEPSS 0.7%CVE-2023-46125MEDIUMFides Information Disclosure Vulnerability in Config API EndpointEPSS 0.7%CVE-2024-20019MEDIUMIn wlan driver, there is a possible memory leak due to improper input handling. This could lead to remote denial of service with no additionEPSS 0.7%CVE-2023-29106MEDIUMA vulnerability has been identified in SIMATIC Cloud Connect 7 CC712 (All versions >= V2.0 < V2.1), SIMATIC Cloud Connect 7 CC716 (All versiEPSS 0.7%CVE-2013-10024LOWExit Strategy Plugin exitpage.php information disclosureEPSS 0.7%CVE-2023-41259—Best Practical Request Tracker (RT) before 4.4.7 and 5.x before 5.0.5 allows Information Disclosure via fake or spoofed RT email headers in EPSS 0.7%CVE-2019-14820MEDIUMIt was found that keycloak before version 8.0.0 exposes internal adapter endpoints in org.keycloak.constants.AdapterConstants, which can be EPSS 0.7%CVE-2022-25990MEDIUMOn 1.0.x versions prior to 1.0.1, systems running F5OS-A software may expose certain registry ports externally. Note: Software versions whicEPSS 0.7%CVE-2025-34098HIGHRiverbed SteelHead VCX Authenticated Arbitrary File Read via Log Filter InjectionEPSS 0.7%