CWE-256
High likelihoodPlaintext Storage of a Password
The product stores a password in plaintext within resources such as memory or files.
215 vulnerabilities with CWE-256
CVE-2024-28961
MEDIUM
Dell OpenManage Enterprise 4.0.0 and 4.0.1 - Insufficiently Protected Credentials
CVSS 6.3
CVE-2024-28325
MEDIUM
Asus RT-N12+ B1 - Plaintext Storage of a Password
CVSS 6.1
CVE-2024-3625
HIGH
mirror registry for Red Hat OpenShift - Plaintext Password Storage in Jinja config.yaml
CVSS 7.3
CVE-2024-3624
HIGH
mirror registry for Red Hat OpenShift - Plaintext Password Storage in config.yaml
CVSS 7.3
CVE-2024-3623
MEDIUM
Red Hat Mirror Registry - Plaintext Storage of Database Secret Key
CVSS 6.5
CVE-2024-3622
HIGH
Red Hat Mirror Registry - Plaintext Password Storage in Configuration Template
CVSS 8.8
CVE-2024-23486
CRITICAL
BUFFALO Wireless LAN - Info Disclosure
CVSS 9.8
CVE-2024-28782
MEDIUM
IBM QRadar Suite Software <1.10.18.0 - Info Disclosure
CVSS 6.3
CVE-2024-25138
MEDIUM
AutomationDirect C-MORE EA9 HMI - Info Disclosure
CVSS 6.5
CVE-2024-26165
HIGH
Visual Studio Code - Privilege Escalation
CVSS 8.8
CVE-2024-26133
MEDIUM
EventStoreDB <20.10.6, <21.10.11, <22.10.5, <23.10.1 - Info Disclosure
CVSS 5.5
CVE-2024-22312
MEDIUM
IBM Storage Defender - Resiliency Service 2.0 - Info Disclosure
CVSS 4.4
CVE-2024-21869
MEDIUM
Rapid SCADA <5.8.4 - Info Disclosure
CVSS 6.2
CVE-2024-22432
HIGH
Dell Networker < 19.9 - Plain-text Password Exposure in NMDA MySQL Database Backup Config
CVSS 7.8
CVE-2023-50945
MEDIUM
IBM Common Licensing 9.0 - Info Disclosure
CVSS 6.2
CVE-2023-50956
MEDIUM
IBM Storage Defender - Resiliency Service <2.0.10 - Info Disclosure
CVSS 4.4
CVE-2023-41610
HIGH
Victure PC420 1.1.39 - Info Disclosure
CVSS 8.8
CVE-2023-5775
LOW
BackWPup <= 4.0.2 - Plaintext Storage of Backup Destination Password
CVSS 2.2
CVE-2023-6518
HIGH
Mia Technology MİA-MED <1.0.7 - Info Disclosure
CVSS 7.5
CVE-2023-31002
MEDIUM
IBM Security Access Manager Container <10.0.6.1 - Info Disclosure
CVSS 5.1
CVE-2023-44300
MEDIUM
Dell DM5500 5.14.0.0 - Info Disclosure
CVSS 5.5
CVE-2023-48700
MEDIUM
nautobot-plugin-device-onboarding 2.0.0-3.0.0 - Cleartext Storage of Sensitive Information in Job Results
CVSS 5.7
CVE-2023-42493
HIGH
EisBaer Scada < 3.0.6433.1964 - Plaintext Password Storage
CVSS 7.1
CVE-2023-43777
MEDIUM
Eaton easySoft < 8.01 - Insufficiently Protected Credentials
CVSS 5.9
CVE-2023-27315
MEDIUM
SnapGathers < 4.9 - Authenticated Plaintext Credential Exposure
CVSS 6.5
Details
Vulnerabilities
215
Exploit Likelihood
High