CWE-311

High likelihood

Missing Encryption of Sensitive Data

Parent: CWE-693 - Protection Mechanism Failure

The product does not encrypt sensitive or critical information before storage or transmission.

508 vulnerabilities with CWE-311
CVE-2019-1003065 HIGH
Jenkins CloudShare Docker-Machine Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003064 HIGH
Jenkins aws-device-farm - Info Disclosure
CVSS 8.8
CVE-2019-1003063 HIGH
Jenkins Amazon SNS Build Notifier Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003062 HIGH
Jenkins AWS CloudWatch Logs Publisher Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003061 HIGH
Jenkins jenkins-cloudformation-plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003060 HIGH
Jenkins Official OWASP ZAP Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003057 HIGH
Jenkins Bitbucket Approve Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003056 HIGH
Jenkins WebSphere Deployer Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003055 HIGH
Jenkins FTP Publisher < - Info Disclosure
CVSS 8.8
CVE-2019-1003054 HIGH
Jenkins Jira Issue Updater Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003053 HIGH
Jenkins HockeyApp Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003052 HIGH
Jenkins AWS Elastic Beanstalk Publisher Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003051 HIGH
Jenkins IRC Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003048 HIGH
Jenkins PRQA Plugin <3.1.0 - Info Disclosure
CVSS 7.8
CVE-2019-9862 MEDIUM
ABUS Secvest FUAA50000 3.01.01 - Info Disclosure
CVSS 6.5
CVE-2019-6518 HIGH
Moxa IKS-G6824A Firmware < 4.5 and EDS-405A/408A/510A Firmware < 3.8 - Plaintext Password Storage
CVSS 7.5
CVE-2018-25060 LOW
go-macaron/csrf < 0.0.0-20180426211050-dadd1711a617 - Sensitive Cookie Without Secure Attribute
CVSS 3.7
CVE-2018-19944 HIGH
QTS < 4.4.3.1354 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2018-10698 CRITICAL
Moxa AWK-3121 Firmware 1.14 - Unauthenticated Sensitive Data Exposure via Unencrypted TELNET Service
CVSS 9.8
CVE-2018-10694 HIGH
Moxa AWK-3121 1.14 - Unauthenticated Sensitive Data Exposure via Unencrypted Wi-Fi
CVSS 8.1
CVE-2018-10690 HIGH
Moxa AWK-3121 1.14 - Unauthenticated Sensitive Data Exposure via Unencrypted HTTP Traffic
CVSS 8.1
CVE-2018-13992 HIGH
PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx 1.0-1.34 - Credential Exposure via Plaintext HTTP
CVSS 8.2
CVE-2018-17287 MEDIUM
Kofax Front Office Server Administration Console 4.1.1.11.0.5212 - Information Disclosure via Download Feature
CVSS 4.9
CVE-2018-17563 MEDIUM
Grandstream GXP16xx VoIP <1.0.4.128 - Info Disclosure
CVSS 5.3
CVE-2018-1938 MEDIUM
IBM Cloud Private 3.1.1 - Info Disclosure
CVSS 4.4
Details
Vulnerabilities 508
Exploit Likelihood High