Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-49162 WordPress BigCommerce Plugin <= 5.0.6 is vulnerable to Sensitive Data Exposure — BigCommerce For WordPress 5.3 Medium2023-12-21
CVE-2023-49762 WordPress AppMySite Plugin <= 3.11.0 is vulnerable to Sensitive Data Exposure — AppMySite – Create an app with the Best Mobile App Builder 5.3 Medium2023-12-21
CVE-2022-47597 WordPress Popup Maker Plugin <= 1.17.1 is vulnerable to Sensitive Data Exposure — Popup Maker – Popup for opt-ins, lead gen, & more 5.3 Medium2023-12-20
CVE-2023-50705 Exposure of Sensitive Information to an Unauthorized Actor in EFACEC UC 500E — UC 500E 5.3 Medium2023-12-19
CVE-2023-47146 IBM QRadar SIEM information disclosure — QRadar SIEM 4.9 Medium2023-12-19
CVE-2023-44991 WordPress Media File Renamer Plugin <= 5.6.9 is vulnerable to Sensitive Data Exposure — Media File Renamer: Rename Files (Manual, Auto & AI) 6.5 Medium2023-12-19
CVE-2023-44983 WordPress Aruba HiSpeed Cache Plugin <= 2.0.6 is vulnerable to Sensitive Data Exposure — Aruba HiSpeed Cache 5.3 Medium2023-12-19
CVE-2023-44982 WordPress WP Retina 2x Plugin <= 6.4.5 is vulnerable to Sensitive Data Exposure — Perfect Images (Manage Image Sizes, Thumbnails, Replace, Retina) 5.3 Medium2023-12-19
CVE-2023-40691 IBM Cloud Pak for Business Automation information disclosure — Cloud Pak for Business Automation 4.9 Medium2023-12-18
CVE-2023-50271 HP-UX System Management Homepage, Disclosure of Information — HPE System Management Homepage (SMH) 7.2 High2023-12-17
CVE-2023-6894 Hikvision Intercom Broadcasting System Log File system.html information disclosure — Intercom Broadcasting System 4.3 Medium2023-12-17
CVE-2023-27317 Information Disclosure Vulnerability in ONTAP 9 — ONTAP 9 4.3 Medium2023-12-15
CVE-2023-50720 XWiki Platform Solr search discloses email addresses of users — xwiki-platform 5.3 Medium2023-12-15
CVE-2023-50715 User accounts disclosed to unauthenticated actors on the LAN — core 4.3 Medium2023-12-15
CVE-2023-0248 Kantech Gen1 ioSmart card reader — ioSmart Gen1 7.5 High2023-12-14
CVE-2023-48671 Dell Virtual Appliance Manager 安全漏洞 — vApp Manager 7.5 High2023-12-14
CVE-2023-49877 IBM System Storage Virtualization Engine information disclosure — System Storage Virtualization Engine 4.3 Medium2023-12-13
CVE-2023-6757 Thecosy IceCMS API PlanetUser information disclosure — IceCMS 5.3 Medium2023-12-13
CVE-2023-45725 Apache CouchDB, IBM Cloudant: Privilege Escalation Using _design Documents — Apache CouchDB 7.5AIHighAI2023-12-13
CVE-2023-50263 Nautobot allows unauthenticated db-file-storage views — nautobot 3.7 Low2023-12-12
CVE-2023-48225 Laf env causes sensitive information disclosure — laf 8.9 High2023-12-12
CVE-2023-49278 Umbraco CMS brute force exploit can be used to collect valid usernames — Umbraco-CMS 5.3 Medium2023-12-12
CVE-2023-49274 Umbraco CMS SMTP misconfiguration exposes potential registered user email — Umbraco-CMS 3.7 Low2023-12-12
CVE-2023-35636 Microsoft Outlook Information Disclosure Vulnerability — Microsoft Office 2019 6.5 Medium2023-12-12
CVE-2023-35625 Azure Machine Learning Compute Instance for SDK Users Information Disclosure Vulnerability — Azure Machine Learning 4.7 Medium2023-12-12
CVE-2023-6727 Leak Inaccessible Playbook Information via Channel Action IDOR — Mattermost 3.1 Low2023-12-12
CVE-2023-46701 Inaccessible Post Information Leak via Run Timeline IDOR — Mattermost 6.5 Medium2023-12-12
CVE-2023-6615 Typecho manage-users.php information disclosure — Typecho 3.5 Low2023-12-08
CVE-2023-6393 Quarkus: potential invalid reuse of context when @cacheresult on a uni is used — Red Hat build of Quarkus 2.13.9.Final 5.3 Medium2023-12-06
CVE-2023-6459 Public endpoint /metrics of Calls plugin reveals channel IDs — Mattermost 5.3 Medium2023-12-06

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.