CWE-256

High likelihood

Plaintext Storage of a Password

Parent: CWE-522 - Insufficiently Protected Credentials

The product stores a password in plaintext within resources such as memory or files.

215 vulnerabilities with CWE-256
CVE-2024-28961 MEDIUM
Dell OpenManage Enterprise 4.0.0 and 4.0.1 - Insufficiently Protected Credentials
CVSS 6.3
CVE-2024-28325 MEDIUM
Asus RT-N12+ B1 - Plaintext Storage of a Password
CVSS 6.1
CVE-2024-3625 HIGH
mirror registry for Red Hat OpenShift - Plaintext Password Storage in Jinja config.yaml
CVSS 7.3
CVE-2024-3624 HIGH
mirror registry for Red Hat OpenShift - Plaintext Password Storage in config.yaml
CVSS 7.3
CVE-2024-3623 MEDIUM
Red Hat Mirror Registry - Plaintext Storage of Database Secret Key
CVSS 6.5
CVE-2024-3622 HIGH
Red Hat Mirror Registry - Plaintext Password Storage in Configuration Template
CVSS 8.8
CVE-2024-23486 CRITICAL
BUFFALO Wireless LAN - Info Disclosure
CVSS 9.8
CVE-2024-28782 MEDIUM
IBM QRadar Suite Software <1.10.18.0 - Info Disclosure
CVSS 6.3
CVE-2024-25138 MEDIUM
AutomationDirect C-MORE EA9 HMI - Info Disclosure
CVSS 6.5
CVE-2024-26165 HIGH
Visual Studio Code - Privilege Escalation
CVSS 8.8
CVE-2024-26133 MEDIUM
EventStoreDB <20.10.6, <21.10.11, <22.10.5, <23.10.1 - Info Disclosure
CVSS 5.5
CVE-2024-22312 MEDIUM
IBM Storage Defender - Resiliency Service 2.0 - Info Disclosure
CVSS 4.4
CVE-2024-21869 MEDIUM
Rapid SCADA <5.8.4 - Info Disclosure
CVSS 6.2
CVE-2024-22432 HIGH
Dell Networker < 19.9 - Plain-text Password Exposure in NMDA MySQL Database Backup Config
CVSS 7.8
CVE-2023-50945 MEDIUM
IBM Common Licensing 9.0 - Info Disclosure
CVSS 6.2
CVE-2023-50956 MEDIUM
IBM Storage Defender - Resiliency Service <2.0.10 - Info Disclosure
CVSS 4.4
CVE-2023-41610 HIGH
Victure PC420 1.1.39 - Info Disclosure
CVSS 8.8
CVE-2023-5775 LOW
BackWPup <= 4.0.2 - Plaintext Storage of Backup Destination Password
CVSS 2.2
CVE-2023-6518 HIGH
Mia Technology MİA-MED <1.0.7 - Info Disclosure
CVSS 7.5
CVE-2023-31002 MEDIUM
IBM Security Access Manager Container <10.0.6.1 - Info Disclosure
CVSS 5.1
CVE-2023-44300 MEDIUM
Dell DM5500 5.14.0.0 - Info Disclosure
CVSS 5.5
CVE-2023-48700 MEDIUM
nautobot-plugin-device-onboarding 2.0.0-3.0.0 - Cleartext Storage of Sensitive Information in Job Results
CVSS 5.7
CVE-2023-42493 HIGH
EisBaer Scada < 3.0.6433.1964 - Plaintext Password Storage
CVSS 7.1
CVE-2023-43777 MEDIUM
Eaton easySoft < 8.01 - Insufficiently Protected Credentials
CVSS 5.9
CVE-2023-27315 MEDIUM
SnapGathers < 4.9 - Authenticated Plaintext Credential Exposure
CVSS 6.5
Details
Vulnerabilities 215
Exploit Likelihood High