CWE-311
High likelihoodMissing Encryption of Sensitive Data
The product does not encrypt sensitive or critical information before storage or transmission.
508 vulnerabilities with CWE-311
CVE-2019-1003065
HIGH
Jenkins CloudShare Docker-Machine Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003064
HIGH
Jenkins aws-device-farm - Info Disclosure
CVSS 8.8
CVE-2019-1003063
HIGH
Jenkins Amazon SNS Build Notifier Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003062
HIGH
Jenkins AWS CloudWatch Logs Publisher Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003061
HIGH
Jenkins jenkins-cloudformation-plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003060
HIGH
Jenkins Official OWASP ZAP Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003057
HIGH
Jenkins Bitbucket Approve Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003056
HIGH
Jenkins WebSphere Deployer Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003055
HIGH
Jenkins FTP Publisher < - Info Disclosure
CVSS 8.8
CVE-2019-1003054
HIGH
Jenkins Jira Issue Updater Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003053
HIGH
Jenkins HockeyApp Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003052
HIGH
Jenkins AWS Elastic Beanstalk Publisher Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003051
HIGH
Jenkins IRC Plugin - Info Disclosure
CVSS 8.8
CVE-2019-1003048
HIGH
Jenkins PRQA Plugin <3.1.0 - Info Disclosure
CVSS 7.8
CVE-2019-9862
MEDIUM
ABUS Secvest FUAA50000 3.01.01 - Info Disclosure
CVSS 6.5
CVE-2019-6518
HIGH
Moxa IKS-G6824A Firmware < 4.5 and EDS-405A/408A/510A Firmware < 3.8 - Plaintext Password Storage
CVSS 7.5
CVE-2018-25060
LOW
go-macaron/csrf < 0.0.0-20180426211050-dadd1711a617 - Sensitive Cookie Without Secure Attribute
CVSS 3.7
CVE-2018-19944
HIGH
QTS < 4.4.3.1354 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2018-10698
CRITICAL
Moxa AWK-3121 Firmware 1.14 - Unauthenticated Sensitive Data Exposure via Unencrypted TELNET Service
CVSS 9.8
CVE-2018-10694
HIGH
Moxa AWK-3121 1.14 - Unauthenticated Sensitive Data Exposure via Unencrypted Wi-Fi
CVSS 8.1
CVE-2018-10690
HIGH
Moxa AWK-3121 1.14 - Unauthenticated Sensitive Data Exposure via Unencrypted HTTP Traffic
CVSS 8.1
CVE-2018-13992
HIGH
PHOENIX CONTACT FL SWITCH 3xxx, 4xxx, 48xx 1.0-1.34 - Credential Exposure via Plaintext HTTP
CVSS 8.2
CVE-2018-17287
MEDIUM
Kofax Front Office Server Administration Console 4.1.1.11.0.5212 - Information Disclosure via Download Feature
CVSS 4.9
CVE-2018-17563
MEDIUM
Grandstream GXP16xx VoIP <1.0.4.128 - Info Disclosure
CVSS 5.3
CVE-2018-1938
MEDIUM
IBM Cloud Private 3.1.1 - Info Disclosure
CVSS 4.4
Details
Vulnerabilities
508
Exploit Likelihood
High