• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-200

CVE-2019-13417

February 26, 2023 by

Search Guard versions before 24.0 had an issue that field caps and mapping API leak field names (but not values) for fields which are not allowed for the user when field level security (FLS) is activated.

CVE-2019-13419

February 26, 2023 by

Search Guard versions before 23.1 had an issue that for aggregations clear text values of anonymised fields were leaked.

CVE-2019-13421

February 26, 2023 by

Search Guard versions before 23.1 had an issue that an administrative user is able to retrieve bcrypt password hashes of other users configured in the internal user database.

CVE-2019-13457

February 26, 2023 by

An issue was discovered in Open Ticket Request System (OTRS) 7.0.x through 7.0.8. A customer user can use the search results to disclose information from their “company” tickets (with the same CustomerID), even when the CustomerDisableCompanyTicketAccess setting is turned on.

CVE-2019-1337

February 26, 2023 by

An information disclosure vulnerability exists when Windows Update Client fails to properly handle objects in memory, aka ‘Windows Update Client Information Disclosure Vulnerability’.

CVE-2019-1334

February 26, 2023 by

An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka ‘Windows Kernel Information Disclosure Vulnerability’. This CVE ID is unique from CVE-2019-1345.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 251
  • Go to page 252
  • Go to page 253
  • Go to page 254
  • Go to page 255
  • Interim pages omitted …
  • Go to page 348
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE