Obtain Information

MCUBO ICT information disclosure | CVE-2023-26071

NAME__________MCUBO ICT information disclosurePlatforms Affected:Risk Level:5.3Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________MCUBO ICT could allow a remote attacker to obtain sensitive information, caused by an observable response discrepancy. By sending multiple requests, an attacker…

GitLab information disclosure | CVE-2023-1648

NAME__________GitLab information disclosurePlatforms Affected:Risk Level:5Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________GitLab could allow a remote authenticated attacker to obtain sensitive information, caused by the leak of authorization headers in the DAST API scanner. By…

Samba security bypass | CVE-2023-0225

NAME__________Samba security bypassPlatforms Affected:Samba Samba 4.17.0 Samba Samba 4.18.0Risk Level:5.4Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________Samba could allow a remote authenticated attacker to bypass security restrictions, caused by an incomplete access check on dnsHostName.…

GoCD information disclosure | CVE-2023-28630

NAME__________GoCD information disclosurePlatforms Affected:GoCD GoCD 22.3.0Risk Level:4Exploitability:UnprovenConsequences:Obtain Information DESCRIPTION__________GoCD could allow a local authenticated attacker to obtain sensitive information, caused by a flaw when the server environment is not correctly…

XunRuiCMS information disclosure | CVE-2023-1681

NAME__________XunRuiCMS information disclosurePlatforms Affected:Risk Level:4.3Exploitability:Proof of ConceptConsequences:Obtain Information DESCRIPTION__________XunRuiCMS could allow a remote authenticated attacker to obtain sensitive information, caused by a flaw in the /config/myfield/test.php script. An attacker could…

XunRuiCMS information disclosure | CVE-2023-1683

NAME__________XunRuiCMS information disclosurePlatforms Affected:Risk Level:4.3Exploitability:Proof of ConceptConsequences:Obtain Information DESCRIPTION__________XunRuiCMS could allow a remote authenticated attacker to obtain sensitive information, caused by a flaw in the /dayrui/Fcms/View/system_log.html script. An attacker could…

XunRuiCMS information disclosure | CVE-2023-1682

NAME__________XunRuiCMS information disclosurePlatforms Affected:Risk Level:4.3Exploitability:Proof of ConceptConsequences:Obtain Information DESCRIPTION__________XunRuiCMS could allow a remote authenticated attacker to obtain sensitive information, caused by a direct request in the /dayrui/My/Config/Install.txt script. An attacker…