Cybonet - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
AccuPOS - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
A vulnerability, which was classified as problematic, has been found in YouDianCMS 7. This issue affects some unknown pr
The CTT Expresso para WooCommerce plugin for WordPress is vulnerable to sensitive information exposure in all versions u
A vulnerability has been found in TVT DVR TD-2104TS-CL, DVR TD-2108TS-HP, Provision-ISR DVR SH-4050A5-5L(MM) and AVISION
The Ebook Store plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 5.8001.
The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to Full Path Disclosure in
Dorsett Controls Central Server update server has potential information leaks with an unprotected file that contains pa
Dorsett Controls InfoScan is vulnerable due to a leak of possible sensitive information through the response headers an
The affiliate-toolkit – WordPress Affiliate Plugin plugin for WordPress is vulnerable to Full Path Disclosure in all ver
The Linkify Text plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.9.1.
The My Custom CSS PHP & ADS plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includ
The No Update Nag plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.4.1
The Obfuscate Email plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.8
The PDF Builder for WPForms plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includ
The Reveal Template plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.7
A vulnerability was found in Weaver e-cology 8. It has been classified as problematic. Affected is an unknown function o
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wp2speed WP2Speed Faster allows Accessing Fu
In SAP Commerce, valid user accounts can be identified during the customer registration and login processes. This allows
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in MBE Worldwide S.P.A. MBE eShip allows Access
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Olive Themes Olive One Click Demo Import all
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Weblizar Coming Soon allows Accessing Functi
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in David Maucher Send Users Email allows Access
The Newsletters plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 4.9.9.
A vulnerability, which was classified as problematic, has been found in SourceCodester Online Graduate Tracer System 1.0
A vulnerability, which was classified as problematic, was found in SourceCodester Online Graduate Tracer System 1.0. Aff
The Relevanssi – A Better Search plugin for WordPress is vulnerable to Information Exposure in all versions up to, and i
The Flamix: Bitrix24 and Contact Form 7 integrations plugin for WordPress is vulnerable to Full Path Disclosure in all v
Mage AI allows remote unauthenticated attackers to leak the terminal server command history of arbitrary users
The WordPress Button Plugin MaxButtons plugin for WordPress is vulnerable to information exposure in all versions up to,
PureVPN Linux client 2.0.2-Productions fails to properly handle DNS queries, allowing them to bypass the VPN tunnel and
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Store Locator Plus.This issue affects Store
The Mollie Payments for WooCommerce plugin for WordPress is vulnerable to information exposure in all versions up to, an
The OpenTelemetry Collector module AWS firehose receiver is for ingesting AWS Kinesis Data Firehose delivery stream mess
The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Full Path Disclosure in all
The Popup Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ
The Premium SEO Pack – WP SEO Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all version
The Ivory Search – WordPress Search Plugin plugin for WordPress is vulnerable to Information Exposure in all versions up
A vulnerability, which was classified as problematic, was found in D-Link DNS-320 2.02b01. This affects an unknown part
The Remember Me Controls plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including
A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC R
The Custom Post Limits plugin for WordPress is vulnerable to full path disclosure in all versions up to, and including,
A privacy issue was addressed by removing sensitive data. This issue is fixed in Xcode 16. An attacker may be able to de
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It's possible t
The Community by PeepSo – Social Network, Membership, Registration, User Profiles plugin for WordPress is vulnerable to
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Steve Burge WordPress Tag Cloud Plugin – Tag
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Stylemix uListing ulisting.This issue affect
Information leakage in mknotifyd in Checkmk before 2.3.0p18, 2.2.0p36, 2.1.0p49 and in 2.0.0p39 (EOL) allows attacker to
The WPIDE – File Manager & Code Editor plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to,
The Formidable Form Builder plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and includi
Frequently Asked Questions
What is CWE-200?
CWE-200 (CWE-200) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-200?
There are 11,142 CVE records associated with CWE-200 in our database. Of these, 314 are critical severity, 1854 are high severity, and 4767 are medium severity.
How can I protect against CWE-200 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-200 using AI-powered security agents.
Detect CWE-200 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-200 vulnerabilities across your infrastructure.
Get Started