← Back
CWE-200

10,374 CVEs • Abstraction: Class • Likelihood of Exploit: High

Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

JSON object

Loading...

CVEs (10,374)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Cisco
1Webex Training Center
Apr 29, 2026
Dec 14, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cisco WebEx Training Center allows remote attackers to discover registration IDs via a crafted URL, aka Bug ID CSCul57121.
1Cisco
1Webex Training Center
Apr 29, 2026
Dec 14, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Cisco WebEx Training Center allows remote attackers to discover session numbers, and bypass host approval for audio-conference attendance, by reading HTML source code, aka Bug ID CSCul57126.
1Cisco
1Webex Meeting Center
Apr 29, 2026
Dec 14, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Cisco WebEx Meeting Center allows remote attackers to obtain sensitive information by reading verbose error messages within server responses, aka Bug ID CSCul35928.
1Cisco
1Webex Training Center
Apr 29, 2026
Dec 14, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Cisco WebEx Training Center provides different error messages for registration attempts depending on whether the e-mail address exists, which allows remote attackers to enumerate attendees via a series of requests, aka B...Show more
Cisco WebEx Training Center provides different error messages for registration attempts depending on whether the e-mail address exists, which allows remote attackers to enumerate attendees via a series of requests, aka Bug ID CSCul36003.Show less
1Cisco
1Webex Training Center
Apr 29, 2026
Dec 14, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The registration component in Cisco WebEx Training Center provides the training-session URL before payment is completed, which allows remote attackers to bypass intended access restrictions and join an audio conference b...Show more
The registration component in Cisco WebEx Training Center provides the training-session URL before payment is completed, which allows remote attackers to bypass intended access restrictions and join an audio conference by entering credential fields from this URL, aka Bug ID CSCul57111.Show less
1Mediawiki
1Mediawiki
Apr 29, 2026
Dec 13, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The CleanChanges extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3, when "Group changes by page in recent changes and watchlist" is enabled, allows remote attackers to obtain sensitive...Show more
The CleanChanges extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3, when "Group changes by page in recent changes and watchlist" is enabled, allows remote attackers to obtain sensitive information (revision-deleted IPs) via the Recent Changes page.Show less
1Uclouvain
1Openjpeg
Apr 29, 2026
Dec 12, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
OpenJPEG 1.3 and earlier allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based out-of-bounds read.
6Canonical
FedoraprojectMozilla+3 more
9Fedora
FirefoxLinux Enterprise Desktop+6 more
Apr 29, 2026
Dec 11, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow user-assisted remote attackers to read clipboard data by leveraging certain middle-click paste operations.
1Microsoft
2Office
Office 2013 Rt
Apr 29, 2026
Dec 11, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Microsoft Office 2013 and 2013 RT allows remote attackers to discover authentication tokens via a crafted response to a file-open request for an Office file on a web site, as exploited in the wild in 2013, aka "Token Hij...Show more
Microsoft Office 2013 and 2013 RT allows remote attackers to discover authentication tokens via a crafted response to a file-open request for an Office file on a web site, as exploited in the wild in 2013, aka "Token Hijacking Vulnerability."Show less
1Islonline
2Isl Desktop Plugin
Isl Light
Apr 29, 2026
Dec 10, 2013
N/A· v4
N/A· v3
3.5 LOW· v2
The ISL Desktop plugin for Windows before 1.4.7 for ISL Light 3.5.4 and earlier allows remote authenticated users to obtain sensitive information by pasting the clipboard contents that have been copied by another user in...Show more
The ISL Desktop plugin for Windows before 1.4.7 for ISL Light 3.5.4 and earlier allows remote authenticated users to obtain sensitive information by pasting the clipboard contents that have been copied by another user in the session.Show less
1Opensuse
1Opensuse
Apr 29, 2026
Dec 2, 2013
N/A· v4
N/A· v3
7.8 HIGH· v2
LanItems.ycp in save_y2logs in yast2-network before 2.24.4 in SUSE YaST writes cleartext Wi-Fi credentials to the y2log log file, which allows context-dependent attackers to obtain sensitive information by reading the (1...Show more
LanItems.ycp in save_y2logs in yast2-network before 2.24.4 in SUSE YaST writes cleartext Wi-Fi credentials to the y2log log file, which allows context-dependent attackers to obtain sensitive information by reading the (1) WIRELESS_WPA_PASSWORD or (2) WIRELESS_CLIENT_KEY_PASSWORD field.Show less
1Microsoft
1Enhanced Mitigation Experience Toolkit
Apr 29, 2026
Nov 29, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Microsoft Enhanced Mitigation Experience Toolkit (EMET) before 4.0 uses predictable addresses for hooked functions, which makes it easier for context-dependent attackers to defeat the ASLR protection mechanism via a retu...Show more
Microsoft Enhanced Mitigation Experience Toolkit (EMET) before 4.0 uses predictable addresses for hooked functions, which makes it easier for context-dependent attackers to defeat the ASLR protection mechanism via a return-oriented programming (ROP) attack.Show less
1Jahia
1Jahia Xcm
Apr 29, 2026
Nov 27, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Jahia xCM before 6.6.2 does not include the HTTPOnly flag in a Set-Cookie header for the JSESSIONID cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this...Show more
Jahia xCM before 6.6.2 does not include the HTTPOnly flag in a Set-Cookie header for the JSESSIONID cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.Show less
1Moodle
1Moodle
Apr 29, 2026
Nov 26, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
lib/filelib.php in Moodle through 2.2.11, 2.3.x before 2.3.10, 2.4.x before 2.4.7, and 2.5.x before 2.5.3 does not send "Cache-Control: private" HTTP headers, which allows remote attackers to obtain sensitive information...Show more
lib/filelib.php in Moodle through 2.2.11, 2.3.x before 2.3.10, 2.4.x before 2.4.7, and 2.5.x before 2.5.3 does not send "Cache-Control: private" HTTP headers, which allows remote attackers to obtain sensitive information by requesting a file that had been previously retrieved by a caching proxy server.Show less
1Sybase
1Adaptive Server Enterprise
Apr 29, 2026
Nov 23, 2013
N/A· v4
N/A· v3
7.8 HIGH· v2
SAP Sybase Adaptive Server Enterprise (ASE) 15.0.3 before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, and 15.7 before 15.7 SP50 or 15.7 SP100 allows local users to obtain sensitive information via unspecified vectors.
1Freebsd
1Freebsd
Apr 29, 2026
Nov 21, 2013
N/A· v4
N/A· v3
4.9 MEDIUM· v2
The nand_ioctl function in sys/dev/nand/nand_geom.c in the nand driver in the kernel in FreeBSD 10 and earlier does not properly initialize a certain data structure, which allows local users to obtain sensitive informati...Show more
The nand_ioctl function in sys/dev/nand/nand_geom.c in the nand driver in the kernel in FreeBSD 10 and earlier does not properly initialize a certain data structure, which allows local users to obtain sensitive information from kernel memory via a crafted ioctl call.Show less
1Lockon
1Ec Cube
Apr 29, 2026
Nov 21, 2013
N/A· v4
N/A· v3
5.5 MEDIUM· v2
data/class/helper/SC_Helper_Address.php in the front-features implementation in LOCKON EC-CUBE 2.12.3 through 2.13.0 allows remote authenticated users to obtain sensitive information via unspecified vectors related to ad...Show more
data/class/helper/SC_Helper_Address.php in the front-features implementation in LOCKON EC-CUBE 2.12.3 through 2.13.0 allows remote authenticated users to obtain sensitive information via unspecified vectors related to addresses.Show less
1Lockon
1Ec Cube
Apr 29, 2026
Nov 21, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
data/class/pages/mypage/LC_Page_Mypage_DeliveryAddr.php in LOCKON EC-CUBE 2.11.2 through 2.13.0 allows remote attackers to obtain sensitive information via a direct request, which reveals the full path in an error messag...Show more
data/class/pages/mypage/LC_Page_Mypage_DeliveryAddr.php in LOCKON EC-CUBE 2.11.2 through 2.13.0 allows remote attackers to obtain sensitive information via a direct request, which reveals the full path in an error message.Show less
1Lockon
1Ec Cube
Apr 29, 2026
Nov 21, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
The displaySystemError function in html/handle_error.php in LOCKON EC-CUBE 2.11.0 through 2.11.5 allows remote attackers to obtain sensitive information by leveraging incorrect handling of error-log output.
9Artifex
CanonicalDebian+6 more
11Chrome
Debian LinuxFedora+8 more
Apr 29, 2026
Nov 19, 2013
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of componen...Show more
The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of segments that follow Start Of Scan (SOS) JPEG markers, which allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted JPEG image.Show less