Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-200 (信息暴露) — Vulnerability Class 2723

2723 vulnerabilities classified as CWE-200 (信息暴露). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-2408 Guest accounts can list all public channels — Mattermost 4.3 Medium2022-07-14
CVE-2022-2401 Team members could access sensitive information of other users via an API call — Mattermost 6.5 Medium2022-07-14
CVE-2022-1662 Convert2RHEL 信息泄露漏洞 — convert2rhel 7.1 -2022-07-14
CVE-2011-4916 Linux kernel 信息泄露漏洞 — Linux Kernel 5.5 -2022-07-12
CVE-2022-31134 Zulip Server public data export contains attachments that are non-public — zulip 4.9 Medium2022-07-12
CVE-2022-35169 SAP BusinessObjects Business Intelligence Platform 信息泄露漏洞 — SAP BusinessObjects Business Intelligence Platform (LCM) 6.7 -2022-07-12
CVE-2022-29901 Arbitrary Memory Disclosure through CPU Side-Channel Attacks (Retbleed) — Intel Microprocessors 5.6 Medium2022-07-12
CVE-2020-35167 Dell BSAFE 安全漏洞 — Dell BSAFE Crypto-C Micro Edition 4.8 Medium2022-07-11
CVE-2022-31139 No security checking for UnsafeAccess.getInstance() in UnsafeAccessor — UnsafeAccessor 5.9 Medium2022-07-11
CVE-2022-33700 SAMSUNG Mobile devices TelephonyUI 安全漏洞 — Samsung Mobile Devices 2.0 Low2022-07-11
CVE-2022-33699 SAMSUNG Mobile devices 安全漏洞 — Samsung Mobile Devices 2.0 Low2022-07-11
CVE-2022-33698 SAMSUNG Mobile devices Telecom application 安全漏洞 — Samsung Mobile Devices 3.3 Low2022-07-11
CVE-2022-33693 SAMSUNG Mobile devices CID Manager 日志信息泄露漏洞 — Samsung Mobile Devices 2.0 Low2022-07-11
CVE-2022-33687 SAMSUNG Mobile devices telephony-common.jar 日志信息泄露漏洞 — Samsung Mobile Devices 3.3 Low2022-07-11
CVE-2022-33686 SAMSUNG Mobile devices GsmAlarmManager 安全漏洞 — Samsung Mobile Devices 2.3 Low2022-07-11
CVE-2022-30753 SAMSUNG Mobile devices SecSoterService 安全漏洞 — Samsung Mobile Devices 3.3 Low2022-07-11
CVE-2022-31112 Protected fields exposed via LiveQuery in parse-server — parse-server 8.2 High2022-06-30
CVE-2022-31032 Resources of private projects can be exposed in Tuleap — tuleap 4.3 Medium2022-06-29
CVE-2017-20110 Teleopti WFM Administration Credentials information disclosure — WFM 4.3 Medium2022-06-29
CVE-2017-20109 Teleopti WFM Administration GetOneTenant Credentials information disclosure — WFM 4.3 Medium2022-06-29
CVE-2022-31068 Sensitive Data Exposure on Refused Inventory Files in GLPI — glpi 5.3 Medium2022-06-28
CVE-2022-0987 Red Hat Enterprise Linux 安全漏洞 — PackageKit 3.3 -2022-06-28
CVE-2022-2221 Devolutions Remote Desktop Manager 安全漏洞 — Remote Desktop Manager 6.5 -2022-06-27
CVE-2017-20101 ProjectSend information disclosure — ProjectSend 3.5 Low2022-06-27
CVE-2022-0722 Exposure of Sensitive Information to an Unauthorized Actor in ionicabizau/parse-url — ionicabizau/parse-url 5.8 -2022-06-27
CVE-2022-31090 CURLOPT_HTTPAUTH option not cleared on change of origin in Guzzle — guzzle 7.7 High2022-06-27
CVE-2022-31091 Change in port should be considered a change in origin in Guzzle — guzzle 7.7 High2022-06-27
CVE-2022-31095 Exposure of Sensitive Information in discourse-chat — discourse-chat 4.3 Medium2022-06-21
CVE-2022-31070 Potential Sensitive Cookie Exposure in NPM Packages @finastra/nestjs-proxy, @ffdc/nestjs-proxy — finastra-nodejs-libs 5.8 Medium2022-06-15
CVE-2022-31069 Potential Authorization Header Exposure in NPM Packages @finastra/nestjs-proxy, @ffdc/nestjs-proxy — finastra-nodejs-libs 5.8 Medium2022-06-15

Vulnerabilities classified as CWE-200 (信息暴露) represent 2723 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.