CWE-311

High likelihood

Missing Encryption of Sensitive Data

Parent: CWE-693 - Protection Mechanism Failure

The product does not encrypt sensitive or critical information before storage or transmission.

506 vulnerabilities with CWE-311
CVE-2019-19739 HIGH
Mfscripts Yetishare < 4.5.3 - Missing Encryption
CVSS 7.5
CVE-2019-3431 CRITICAL
ZTE Zxcloud Goldendata Vap - Insufficiently Protected Credentials
CVSS 9.8
CVE-2019-18833 MEDIUM
Barco ClickShare Button R9861500D01 <1.9.0 - Info Disclosure
CVSS 5.9
CVE-2019-2231 MEDIUM
Android <10 - Info Disclosure
CVSS 4.4
CVE-2019-19464 MEDIUM
CBC Gem <9.24.1-9.26.0 - Info Disclosure
CVSS 5.3
CVE-2019-4214 LOW
IBM Smartcloud Analytics Log Analysis - Incorrect Permission Assign...
CVSS 3.7
CVE-2019-15704 MEDIUM
Fortinet Forticlient < 6.0.7 - Missing Encryption
CVSS 5.5
CVE-2019-18980 HIGH
Signify Philips Taolight Smart Wi-Fi Wiz Connected LED Bulb - Info ...
CVSS 7.5
CVE-2019-16210 MEDIUM
Brocade SANnav <2.0 - Info Disclosure
CVSS 5.5
CVE-2019-16206 MEDIUM
Brocade SANnav <2.0 - Info Disclosure
CVSS 5.5
CVE-2019-18800 HIGH
Viber <11.7.0.5 - Info Disclosure
CVSS 8.8
CVE-2019-10084 HIGH
Apache Impala 2.7.0-3.2.0 - Auth Bypass
CVSS 7.5
CVE-2019-11664 MEDIUM
Micro Focus Service Manager <9.63 - Info Disclosure
CVSS 6.5
CVE-2019-11663 MEDIUM
Micro Focus Service Manager <9.62 - Info Disclosure
CVSS 6.5
CVE-2019-4171 LOW
IBM Cognos Controller - Missing Encryption
CVSS 3.7
CVE-2019-9681 MEDIUM
Dahua - Info Disclosure
CVSS 5.3
CVE-2019-13922 LOW
SINEMA Remote Connect Server < V2.0 SP1 - Info Disclosure
CVSS 2.7
CVE-2019-13419 HIGH
Search-guard Search Guard < 23.1 - Information Disclosure
CVSS 7.5
CVE-2019-13418 HIGH
Search-guard Search Guard < 24.0 - Missing Encryption
CVSS 7.5
CVE-2019-5448 HIGH
Yarn < 1.17.3 - Cleartext Transmission
CVSS 8.1
CVE-2019-12924 CRITICAL
Mailenable < 6.90 - XXE
CVSS 9.8
CVE-2019-10103 HIGH
JetBrains IntelliJ IDEA - SSRF
CVSS 8.1
CVE-2019-6169 HIGH
Lenovo Service Bridge < 4.1.0.1 - Missing Encryption
CVSS 7.5
CVE-2019-0307 LOW
SAP Solution Manager - Missing Encryption
CVSS 2.4
CVE-2019-11523 CRITICAL
Anviz Global M3 Outdoor RFID Access Control - Command Injection
CVSS 9.8
Details
Vulnerabilities 506
Exploit Likelihood High