CWE-256

High likelihood

Plaintext Storage of a Password

Parent: CWE-522 - Insufficiently Protected Credentials

The product stores a password in plaintext within resources such as memory or files.

204 vulnerabilities with CWE-256
CVE-2024-22312 MEDIUM
IBM Storage Defender - Resiliency Service 2.0 - Info Disclosure
CVSS 4.4
CVE-2024-21869 MEDIUM
Rapid SCADA <5.8.4 - Info Disclosure
CVSS 6.2
CVE-2024-22432 HIGH
Dell Networker < 19.9 - Plain-text Password Exposure in NMDA MySQL Database Backup Config
CVSS 7.8
CVE-2023-50945 MEDIUM
IBM Common Licensing 9.0 - Info Disclosure
CVSS 6.2
CVE-2023-50956 MEDIUM
IBM Storage Defender - Resiliency Service <2.0.10 - Info Disclosure
CVSS 4.4
CVE-2023-41610 HIGH
Victure PC420 1.1.39 - Info Disclosure
CVSS 8.8
CVE-2023-5775 LOW
BackWPup <= 4.0.2 - Plaintext Storage of Backup Destination Password
CVSS 2.2
CVE-2023-6518 HIGH
Mia Technology MİA-MED <1.0.7 - Info Disclosure
CVSS 7.5
CVE-2023-31002 MEDIUM
IBM Security Access Manager Container <10.0.6.1 - Info Disclosure
CVSS 5.1
CVE-2023-44300 MEDIUM
Dell DM5500 5.14.0.0 - Info Disclosure
CVSS 5.5
CVE-2023-48700 MEDIUM
nautobot-plugin-device-onboarding 2.0.0-3.0.0 - Cleartext Storage of Sensitive Information in Job Results
CVSS 5.7
CVE-2023-42493 HIGH
EisBaer Scada < 3.0.6433.1964 - Plaintext Password Storage
CVSS 7.1
CVE-2023-43777 MEDIUM
Eaton easySoft < 8.01 - Insufficiently Protected Credentials
CVSS 5.9
CVE-2023-27315 MEDIUM
SnapGathers < 4.9 - Authenticated Plaintext Credential Exposure
CVSS 6.5
CVE-2023-39452 HIGH
Socomec Modulys GP Firmware - Unauthenticated Plaintext Password Exposure via Session Management Issue
CVSS 7.5
CVE-2023-4984 MEDIUM
didi KnowSearch <0.3.2/0.3.1.2 - Info Disclosure
CVSS 4.3
CVE-2023-4400 MEDIUM
Skyhigh Secure Web Gateway <11.2.14,10.2.25,12.2.1 - Info Disclosure
CVSS 6.2
CVE-2023-4918 HIGH
Keycloak 22.0.2 - Cleartext Transmission of Sensitive Information via User Registration Form
CVSS 8.8
CVE-2023-39227 MEDIUM
Softneta MedDream PACS - Info Disclosure
CVSS 6.1
CVE-2023-35067 HIGH
Infodrom Software E-Invoice Approval System <v.20230701 - Info Disc...
CVSS 7.5
CVE-2023-35765 MEDIUM
PiiGAB M-Bus 900s Firmware - Plaintext Password Storage
CVSS 6.5
CVE-2023-3395 MEDIUM
TWinSoft Configuration Tool - Info Disclosure
CVSS 6.5
CVE-2023-26204 LOW
FortiSIEM 5.3.0-6.7 - Plaintext Password Storage
CVSS 3.7
CVE-2023-2633 MEDIUM
Jenkins Code Dx Plugin <3.1.0 - Info Disclosure
CVSS 4.3
CVE-2023-2632 MEDIUM
Jenkins Code Dx Plugin <3.1.0 - Info Disclosure
CVSS 4.3
Details
Vulnerabilities 204
Exploit Likelihood High