CWE-200— Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.— MITRE CWE catalog
11,178 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-200page 4 of 224
- CVE-2007-2768MEDIUMCVSS v2 4.3EG 4.32007-05-21
OpenSSH, when using OPIE (One-Time Passwords in Everything) for PAM, allows remote attackers to determine the existence of certain user accounts, which displays a different response if the user account exists and is configured to use one-t…
- CVE-2007-2780MEDIUMCVSS v2 5.0EG 5.02007-05-21
PsychoStats 3.0.6b and earlier allows remote attackers to obtain sensitive information via a request for server.php with a missing or invalid newtheme parameter, which reveals a path in an error message.
- CVE-2007-3074MEDIUMCVSS v2 4.3EG 4.32007-06-06
Mozilla Firefox 2.0.0.4 and earlier allows remote attackers to read files in the local Firefox installation directory via a resource:// URI.
- CVE-2007-3382MEDIUMCVSS v2 4.3EG 4.32007-08-14
Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 treats single quotes ("'") as delimiters in cookies, which might cause sensitive information such as session IDs to be leaked and allow remo…
- CVE-2007-3385MEDIUMCVSS v2 4.3EG 4.32007-08-14
Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 does not properly handle the \" character sequence in a cookie value, which might cause sensitive information such as session IDs to be leak…
- CVE-2007-3650MEDIUMCVSS 5.3EG 5.32008-07-09
myWebland myBloggie 2.1.6 allow remote attackers to obtain sensitive information via (1) an invalid year parameter to calendar.php, reached through index.php; (2) a direct request to common.php; and (3) a mode array parameter in the query …
- CVE-2007-3651MEDIUMCVSS 5.3EG 5.32008-07-09
class/page.php in Farsi Script (aka FaScript) FaName 1.0 allows remote attackers to obtain sensitive information via a '; (quote semicolon) sequence in the id parameter, which reveals the installation path in an error message.
- CVE-2007-3656MEDIUMCVSS v2 6.8EG 6.82007-07-10
Mozilla Firefox before 1.8.0.13 and 1.8.1.x before 1.8.1.5 does not perform a security zone check when processing a wyciwyg URI, which allows remote attackers to obtain sensitive information, poison the browser cache, and possibly enable f…
- CVE-2007-3756MEDIUMCVSS v2 4.3EG 4.32007-09-27
Safari in Apple iPhone 1.1.1, and Safari 3 before Beta Update 3.0.4 on Windows and Mac OS X 10.4 through 10.4.10, allows remote attackers to obtain sensitive information via a crafted web page that identifies the URL of the parent window, …
- CVE-2007-3850LOWCVSS v2 1.9EG 1.92007-10-23
The eHCA driver in Linux kernel 2.6 before 2.6.22, when running on PowerPC, does not properly map userspace resources, which allows local users to read portions of physical address space.
- CVE-2007-4514MEDIUMCVSS v2 5.0EG 5.02009-04-15
Unspecified vulnerability in HP ProCurve Manager and HP ProCurve Manager Plus 2.3 and earlier allows remote attackers to obtain sensitive information from the ProCurve Manager server via unknown attack vectors.
- CVE-2007-4656LOWCVSS v2 2.1EG 2.12007-09-04
backup-manager-upload in Backup Manager before 0.6.3 provides the FTP server hostname, username, and password as plaintext command line arguments during FTP uploads, which allows local users to obtain sensitive information by listing the p…
- CVE-2007-4669MEDIUMCVSS v2 4.0EG 4.02007-09-04
The Services API in Firebird before 2.0.2 allows remote authenticated users without SYSDBA privileges to read the server log (firebird.log), aka CORE-1148.
- CVE-2007-4688MEDIUMCVSS v2 5.0EG 5.02007-11-15
The Networking component in Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to obtain all addresses for a host, including link-local addresses, via a Node Information Query.
- CVE-2007-4861MEDIUMCVSS v2 5.0EG 5.02007-10-30
SAXON 5.4, with display_errors enabled, allows remote attackers to obtain sensitive information via (1) a direct request for news.php, (2) an invalid use of a newsid array parameter to admin/edit-item.php, and possibly unspecified vectors …
- CVE-2007-4991MEDIUMCVSS v2 5.0EG 5.02007-09-21
The SOCKS4 Proxy in Microsoft Internet Security and Acceleration (ISA) Server 2004 SP1 and SP2 allows remote attackers to obtain potentially sensitive information (the destination IP address of another user's session) via an empty packet.
- CVE-2007-5011MEDIUMCVSS v2 5.0EG 5.02007-09-20
webbatch.exe in WebBatch allows remote attackers to obtain sensitive information via the dumpinputdata parameter.
- CVE-2007-5022MEDIUMCVSS v2 5.0EG 5.02007-09-21
Unspecified vulnerability in certain IBM Tivoli Storage Manager (TSM) clients 5.1 before 5.1.8.1, 5.2 before 5.2.5.2, 5.3 before 5.3.5.3, and 5.4 before 5.4.1.2, when using "server-initiated prompted scheduling," allows remote attackers to…
- CVE-2007-5028HIGHCVSS v2 7.5EG 7.52007-09-21
Dibbler 0.6.0 on Linux uses weak world-writable permissions for unspecified files in /var/lib/dibbler, which has unknown impact and local attack vectors.
- CVE-2007-5034MEDIUMCVSS v2 4.3EG 4.32007-09-21
ELinks before 0.11.3, when sending a POST request for an https URL, appends the body and content headers of the POST request to the CONNECT request in cleartext, which allows remote attackers to sniff sensitive data that would have been pr…
- CVE-2007-5129MEDIUMCVSS v2 5.0EG 5.02007-09-27
SimpGB 1.46.02 stores sensitive information under the web root with insufficient access control, which allows remote attackers to (1) obtain sensitive configuration information via a direct request for admin/cfginfo.php; and (2) download a…
- CVE-2007-5172MEDIUMCVSS v2 5.0EG 5.02007-10-01
Quicksilver Forums before 1.4.1 allows remote attackers to obtain sensitive information by causing unspecified connection errors, which reveals the database password in the resulting error message.
- CVE-2007-5195MEDIUMCVSS v2 6.8EG 6.82007-10-14
Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in SUSE Linux Enterprise Desktop 10 allows remote attackers to obtain credentials via a man-in-the-middle attack, a diffe…
- CVE-2007-5196HIGHCVSS v2 7.5EG 7.52007-10-14
Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in SUSE Linux Enterprise Desktop 10 allows remote attackers to obtain credentials via a man-in-the-middle attack, a diffe…
- CVE-2007-5264MEDIUMCVSS v2 5.0EG 5.02007-10-08
Battlefront Dropteam 1.3.3 and earlier sends the client's online account name and password to the game server, which allows malicious game servers to steal account information.
- CVE-2007-5335MEDIUMCVSS v2 4.3EG 4.32007-10-24
Mozilla Firefox 2.0 before 2.0.0.8 allows remote attackers to obtain sensitive system information by using the addMicrosummaryGenerator sidebar method to access file: URIs.
- CVE-2007-5337MEDIUMCVSS v2 4.3EG 4.32007-10-21
Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when running on Linux systems with gnome-vfs support, might allow remote attackers to read arbitrary files on SSH/sftp servers that accept key authentication by creating a web page…
- CVE-2007-5404MEDIUMCVSS v2 5.0EG 5.02008-01-09
Layton HelpBox 3.7.1 generates different responses depending on whether or not a username is valid in a failed login attempt, which allows remote attackers to enumerate valid usernames.
- CVE-2007-5413HIGHCVSS v2 7.8EG 7.82007-10-29
httpd.tkd in Radia Integration Server in Hewlett-Packard (HP) OpenView Configuration Management (CM) Infrastructure 4.0 through 4.2i and Client Configuration Manager (CCM) 2.0 allows remote attackers to read arbitrary files via URLs contai…
- CVE-2007-5431HIGHCVSS v2 7.8EG 7.82007-10-12
include/imageupload.js in the MyFTPUploader module in Stride 1.0 contains sensitive information including FTP login credentials, which might allow remote attackers to gain unauthorized access to the FTP server being used by the module by v…
- CVE-2007-5432HIGHCVSS v2 7.5EG 7.52007-10-12
Stride 1.0 has a default administrator username of "scott" with the password "running", which allows remote attackers to obtain administrative access through login.php.
- CVE-2007-5439MEDIUMCVSS v2 5.0EG 5.02007-10-13
CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 stores sensitive user information in log files with predictable names, which allows remote attackers to obtain this information via unspecified vectors.
- CVE-2007-5444MEDIUMCVSS v2 5.0EG 5.02007-10-14
CMS Made Simple 1.1.3.1 allows remote attackers to obtain the full path via a direct request for unspecified files.
- CVE-2007-5470LOWCVSS v2 2.1EG 2.12007-10-16
Microsoft Expression Media stores the catalog password in cleartext in the catalog IVC file, which allows local users to obtain sensitive information and gain access to the catalog by reading the IVC file.
- CVE-2007-5473MEDIUMCVSS v2 5.0EG 5.02007-10-18
StaticFileHandler.cs in System.Web in Mono before 1.2.5.2, when running on Windows, allows remote attackers to obtain source code of sensitive files via a request containing a trailing (1) space or (2) dot, which is not properly handled by…
- CVE-2007-5549LOWCVSS v2 2.1EG 2.12007-10-18
Unspecified vulnerability in Command EXEC in Cisco IOS allows local users to bypass command restrictions and obtain sensitive information via an unspecified "variation of an IOS command" involving "two different methods", aka CSCsk16129. …
- CVE-2007-5550MEDIUMCVSS v2 5.0EG 5.02007-10-18
Unspecified vulnerability in Cisco IOS allows remote attackers to obtain the IOS version via unspecified vectors involving a "common network service", aka PSIRT-1255024833. NOTE: as of 20071016, the only disclosure is a vague pre-advisory…
- CVE-2007-5554HIGHCVSS v2 7.1EG 7.12007-10-18
Oracle allows remote attackers to obtain server memory contents via crafted packets, aka Oracle reference number 7892711. NOTE: as of 20071016, the only disclosure is a vague pre-advisory with no actionable information. However, since it …
- CVE-2007-5555MEDIUMCVSS v2 6.9EG 6.92007-10-18
Unspecified vulnerability in Symantec Altiris Deployment Solution allows attackers to obtain authentication credentials via unknown vectors, aka "Authentication Credentials Information Leakage in Altiris Deployment Solution." NOTE: this d…
- CVE-2007-5576MEDIUMCVSS v2 6.8EG 6.82007-10-18
BEA Tuxedo 8.0 before RP392 and 8.1 before RP293, and WebLogic Enterprise 5.1 before RP174, echo the password in cleartext, which allows physically proximate attackers to obtain sensitive information via the (1) cnsbind, (2) cnsunbind, or …
- CVE-2007-5637MEDIUMCVSS v2 4.3EG 4.32007-10-23
The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), and other product lines allow remote attackers to eavesdrop on the physical environment via an O…
- CVE-2007-5638MEDIUMCVSS v2 4.3EG 4.32007-10-23
The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), and other product lines, use only 65536 different values in the 32-bit ID number field of an RUD…
- CVE-2007-5654MEDIUMCVSS v2 5.0EG 5.02007-10-23
LiteSpeed Web Server before 3.2.4 allows remote attackers to trigger use of an arbitrary MIME type for a file via a "%00." sequence followed by a new extension, as demonstrated by reading PHP source code via requests for .php%00.txt files,…
- CVE-2007-5701LOWCVSS v2 2.1EG 2.12007-10-29
Incomplete blacklist vulnerability in the Certificate Authority (CA) in IBM Lotus Domino before 7.0.3 allows local users, or attackers with physical access, to obtain sensitive information (passwords) when an administrator enters a "ca act…
- CVE-2007-5774MEDIUMCVSS v2 5.0EG 5.02007-11-01
index.php in the File Manager module in Flatnuke 3 allows remote attackers to obtain sensitive information via an invalid argumentname parameter in a disc op action, which reveals the path in an error message.
- CVE-2007-5816MEDIUMCVSS v2 5.0EG 5.02007-11-05
dialog.php in CONTENTCustomizer 3.1mp and earlier allows remote attackers to obtain sensitive author credentials by making a request with an editauthor action, then reading the value of the newlocalpassword password input field in the HTML…
- CVE-2007-5899MEDIUMCVSS v2 4.3EG 4.32007-11-20
The output_add_rewrite_var function in PHP before 5.2.5 rewrites local forms in which the ACTION attribute references a non-local URL, which allows remote attackers to obtain potentially sensitive information by reading the requests for th…
- CVE-2007-5922MEDIUMCVSS v2 5.0EG 5.02007-11-10
The modules/mdop.m in the Cypress 1.0k script for BitchX, as downloaded from a distribution site in November 2007, contains an externally introduced backdoor that e-mails sensitive information (hostnames, usernames, and shell history) to a…
- CVE-2007-5934MEDIUMCVSS v2 4.3EG 4.32007-11-13
The LOB functionality in PEAR MDB2 before 2.5.0a1 interprets a request to store a URL string as a request to retrieve and store the contents of the URL, which might allow remote attackers to use MDB2 as an indirect proxy or obtain sensitiv…
- CVE-2007-5958MEDIUMCVSS v2 5.0EG 5.02008-01-18
X.Org Xserver before 1.4.1 allows local users to determine the existence of arbitrary files via a filename argument in the -sp option to the X program, which produces different error messages depending on whether the filename exists.
Map vulnerabilities like CWE-200 to your infrastructure
EchelonGraph correlates every CVE — across CWE-200 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →