Vulnerabilities (CVE)

Filtered by CWE-200
Total 11066 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-26281 2026-06-17 N/A 5.5 MEDIUM
Some parameters of the alarm clock module are improperly stored, leaking some sensitive information.
CVE-2021-26279 2026-06-17 N/A 5.9 MEDIUM
Some parameters of the weather module are improperly stored, leaking some sensitive information.
CVE-2021-26067 1 Atlassian 1 Bamboo 2026-06-17 5.0 MEDIUM 5.3 MEDIUM
Affected versions of Atlassian Bamboo allow an unauthenticated remote attacker to view a stack trace that may reveal the path for the home directory in disk and if certain files exists on the tmp directory, via a Sensitive Data Exposure vulnerability in the /chart endpoint. The affected versions are before version 7.2.2.
CVE-2021-25652 1 Avaya 1 Aura Appliance Virtualization Platform 2026-06-17 2.1 LOW 4.9 MEDIUM
An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Appliance Virtualization Platform Utilities (AVPU). This vulnerability may potentially allow any local user to access system functionality and configuration information that should only be available to a privileged user. Affects versions 8.0.0.0 through 8.1.3.1 of AVPU.
CVE-2021-25649 1 Avaya 1 Aura Utility Services 2026-06-17 2.1 LOW 4.9 MEDIUM
An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Utility Services. This vulnerability may potentially allow any local user to access system functionality and configuration information that should only be available to a privileged user. Affects all 7.x versions of Avaya Aura Utility Services
CVE-2021-25519 1 Google 1 Android 2026-06-17 2.1 LOW 4.0 MEDIUM
An improper access control vulnerability in CPLC prior to SMR Dec-2021 Release 1 allows local attackers to access CPLC information without permission.
CVE-2021-25486 1 Google 1 Android 2026-06-17 2.1 LOW 2.5 LOW
Exposure of information vulnerability in ipcdump prior to SMR Oct-2021 Release 1 allows an attacker detect device information via analyzing packet in log.
CVE-2021-25464 1 Samsung 1 Capture 2026-06-17 2.1 LOW 3.3 LOW
An improper file management vulnerability in SamsungCapture prior to version 4.8.02 allows sensitive information leak.
CVE-2021-25432 2 Google, Samsung 2 Android, Samsung Members 2026-06-17 2.1 LOW 3.3 LOW
Information exposure vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to access chat data.
CVE-2021-25426 1 Google 1 Android 2026-06-17 5.0 MEDIUM 7.5 HIGH
Improper component protection vulnerability in SmsViewerActivity of Samsung Message prior to SMR July-2021 Release 1 allows untrusted applications to access Message files.
CVE-2021-25403 2 Google, Samsung 2 Android, Account 2026-06-17 2.1 LOW 3.3 LOW
Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provider using SettingWebView component.
CVE-2021-25392 1 Google 1 Android 2026-06-17 2.1 LOW 4.0 MEDIUM
Improper protection of backup path configuration in Samsung Dex prior to SMR MAY-2021 Release 1 allows local attackers to get sensitive information via changing the path.
CVE-2021-25376 1 Samsung 1 Email 2026-06-17 5.0 MEDIUM 3.1 LOW
An improper synchronization logic in Samsung Email prior to version 6.1.41.0 can leak messages in certain mailbox in plain text when STARTTLS negotiation is failed.
CVE-2021-25375 1 Samsung 1 Email 2026-06-17 4.3 MEDIUM 6.5 MEDIUM
Using predictable index for attachments in Samsung Email prior to version 6.1.41.0 allows remote attackers to get attachments of another emails when users open the malicious attachment.
CVE-2021-25369 1 Samsung 1 Android 2026-06-17 2.1 LOW 6.2 MEDIUM
An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.
CVE-2021-25364 1 Google 1 Android 2026-06-17 2.1 LOW 4.0 MEDIUM
A pendingIntent hijacking vulnerability in Secure Folder prior to SMR APR-2021 Release 1 allows unprivileged applications to access contact information.
CVE-2021-25357 1 Google 1 Android 2026-06-17 2.1 LOW 5.6 MEDIUM
A pendingIntent hijacking vulnerability in Create Movie prior to SMR APR-2021 Release 1 in Android O(8.x) and P(9.0), 3.4.81.1 in Android Q(10,0), and 3.6.80.7 in Android R(11.0) allows unprivileged applications to access contact information.
CVE-2021-25350 2 Google, Samsung 2 Android, Account 2026-06-17 2.1 LOW 2.0 LOW
Information Exposure vulnerability in Samsung Account prior to version 12.1.1.3 allows physically proximate attackers to access user information via log.
CVE-2021-25333 1 Samsung 1 Pay Mini 2026-06-17 1.9 LOW 3.2 LOW
Improper access control in Samsung Pay mini application prior to v4.0.14 allows unauthorized access to balance information over the lockscreen via scanning specific QR code.
CVE-2021-25332 1 Samsung 1 Pay Mini 2026-06-17 1.9 LOW 3.2 LOW
Improper access control in Samsung Pay mini application prior to v4.0.14 allows unauthorized access to contacts information over the lockscreen in specific condition.