CWE-256

High likelihood

Plaintext Storage of a Password

Parent: CWE-522 - Insufficiently Protected Credentials

The product stores a password in plaintext within resources such as memory or files.

204 vulnerabilities with CWE-256
CVE-2024-6118 CRITICAL
Hamastar MeetingHub Paperless Meetings 2021 - Info Disclosure
CVSS 9.1
CVE-2024-3082 MEDIUM
Proges Sensor Net Connect Firmware - Plaintext Password Storage
CVSS 4.2
CVE-2024-37135 LOW
Dell DM5500 Firmware < 5.17.0.0 - Plaintext Password Storage
CVSS 3.3
CVE-2024-40116 HIGH
Solar-Log 1000 < 2.8.2 - Plaintext Storage of Passwords in Export and Notification Files
CVSS 8.1
CVE-2024-39733 MEDIUM
IBM Datacap Navigator <9.1.10 - Info Disclosure
CVSS 5.5
CVE-2024-39220 MEDIUM
BAS-IP AV and AA Series < v3.9.2 - Authenticated Plaintext Password Exposure via SIP Account Request
CVSS 6.5
CVE-2024-33375 CRITICAL
LB-LINK BL-W1210M v2.0 - Info Disclosure
CVSS 9.8
CVE-2024-27166 HIGH
Toshiba Tec e-Studio multi-function peripheral (MFP) - Plaintext Password Exposure via Coredump Permissions
CVSS 7.4
CVE-2024-25052 MEDIUM
IBM Jazz Reporting Service 7.0.3 - Info Disclosure
CVSS 4.4
CVE-2024-28736 HIGH
Debezium Community debezium-ui <2.5 - RCE
CVSS 7.1
CVE-2024-36081 CRITICAL
Westermo EDW-100 through 2024-05-03 - Unauthenticated Plaintext Password Exposure in Configuration File
CVSS 9.8
CVE-2024-4425 MEDIUM
CemiPark 4.5 4.7 5.03 - Plaintext Password Storage in Integration Credentials
CVSS 5.4
CVE-2024-4232 MEDIUM
Digisol Router <3.2.02 - Info Disclosure
CVSS 4.1
CVE-2024-28971 LOW
Dell Update Manager Plugin <1.5.0 - Info Disclosure
CVSS 3.5
CVE-2024-28961 MEDIUM
Dell OpenManage Enterprise 4.0.0 and 4.0.1 - Insufficiently Protected Credentials
CVSS 6.3
CVE-2024-28325 MEDIUM
Asus RT-N12+ B1 - Plaintext Storage of a Password
CVSS 6.1
CVE-2024-3625 HIGH
mirror registry for Red Hat OpenShift - Plaintext Password Storage in Jinja config.yaml
CVSS 7.3
CVE-2024-3624 HIGH
mirror registry for Red Hat OpenShift - Plaintext Password Storage in config.yaml
CVSS 7.3
CVE-2024-3623 MEDIUM
Red Hat Mirror Registry - Plaintext Storage of Database Secret Key
CVSS 6.5
CVE-2024-3622 HIGH
Red Hat Mirror Registry - Plaintext Password Storage in Configuration Template
CVSS 8.8
CVE-2024-23486 CRITICAL
BUFFALO Wireless LAN - Info Disclosure
CVSS 9.8
CVE-2024-28782 MEDIUM
IBM QRadar Suite Software <1.10.18.0 - Info Disclosure
CVSS 6.3
CVE-2024-25138 MEDIUM
AutomationDirect C-MORE EA9 HMI - Info Disclosure
CVSS 6.5
CVE-2024-26165 HIGH
Visual Studio Code - Privilege Escalation
CVSS 8.8
CVE-2024-26133 MEDIUM
EventStoreDB <20.10.6, <21.10.11, <22.10.5, <23.10.1 - Info Disclosure
CVSS 5.5
Details
Vulnerabilities 204
Exploit Likelihood High