Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-34250 Discourse vulnerable to exposure of number of topics recently created in private categories — discourse 4.8 Medium2023-06-13
CVE-2022-43684 ACL bypass in Reporting functionality — Now Platform 9.9 Critical2023-06-13
CVE-2023-22586 Local File Inclusion in Danfoss AK-EM100 — AK-EM100 7.7 High2023-06-11
CVE-2023-25912 Webreport disclosure to unauthorized actor in Danfoss AK-EM100 — AK-EM100 5.3 Medium2023-06-11
CVE-2023-32312 Client secret not mandatory in UmbracoIdentityExtensions — UmbracoIdentityExtensions 3.7 Low2023-06-09
CVE-2023-34243 Windows user name disclosure in TGstation — tgstation-server 5.8 Medium2023-06-08
CVE-2023-33848 IBM CICS TX information disclosure — TXSeries for Multiplatforms 4.9 Medium2023-06-07
CVE-2021-4377 Doneren met Mollie <= 2.8.4 - Information Disclosure — Doneren met Mollie 6.5 Medium2023-06-07
CVE-2020-36723 ListingPro - WordPress Directory & Listing Theme < 2.6.1 - Sensitive Information Disclosure — ListingPro - WordPress Directory & Listing Theme 5.3 Medium2023-06-07
CVE-2022-40525 Information Exposure in Linux Networking Firmware — Snapdragon 7.1 High2023-06-06
CVE-2022-40523 Information exposure in Kernel — Snapdragon 7.1 High2023-06-06
CVE-2013-10030 Exit Box Lite Plugin wordpress-exit-box-lite.php information disclosure — Exit Box Lite Plugin 4.3 Medium2023-06-05
CVE-2023-33956 Parameter based Indirect Object Referencing leading to private file exposure in Kanboard — kanboard 4.3 Medium2023-06-05
CVE-2023-3064 Mobatime mobile application - Sensitive information disclosure — Mobatime mobile application AMXGT100 7.5 High2023-06-05
CVE-2023-34094 ChuanhuChatGPT vulnerable to unauthorized configuration file access — ChuanhuChatGPT 7.5 High2023-06-02
CVE-2023-32710 Information Disclosure via the ‘copyresults’ SPL Command — Splunk Enterprise 4.8 Medium2023-06-01
CVE-2023-33960 OpenProject vulnerable to project identifier information leakage through robots.txt — openproject 7.5 High2023-06-01
CVE-2023-33979 gpt_academic's Configuration File vulnerable to File Information Disclosure — gpt_academic 6.5 Medium2023-05-31
CVE-2023-2749 A Gain Information vulnerability was found on Download Center. — Download Center 8.6 High2023-05-31
CVE-2023-33955 Minio console object names with RIGHT-TO-LEFT OVERRIDE unicode character can be exploited — console 4.3 Medium2023-05-30
CVE-2023-31185 ROZCOM server framework — server framework 7.5 High2023-05-30
CVE-2014-125102 Bestwebsoft Relevant Plugin Thumbnail information disclosure — Relevant Plugin 4.3 Medium2023-05-29
CVE-2023-32681 Unintended leak of Proxy-Authorization header in requests — requests 6.1 Medium2023-05-26
CVE-2022-39335 Synapse does not apply enough checks to servers requesting auth events of events in a room — synapse 5.0 Medium2023-05-26
CVE-2023-28322 libcurl 安全漏洞 — https://github.com/curl/curl 9.1 -2023-05-26
CVE-2023-2025 Exposure of Sensitive Information in OpenBlue Enterprise Manager Data Collector — OpenBlue Enterprise Manager Data Collector 5.0 Medium2023-05-18
CVE-2022-45459 Acronis Agent和Acronis Cyber Protect 安全漏洞 — Acronis Agent 6.5 -2023-05-18
CVE-2023-27863 IBM Spectrum Protect Plus Server information disclosure — Spectrum Protect Plus Server 4.4 Medium2023-05-12
CVE-2023-2514 DB username/password revealed in application logs — Mattermost 6.7 Medium2023-05-12
CVE-2023-27870 IBM Spectrum Virtualize information disclosure — Spectrum Virtualize 5.9 Medium2023-05-11

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.