CWE-311
High likelihoodMissing Encryption of Sensitive Data
The product does not encrypt sensitive or critical information before storage or transmission.
508 vulnerabilities with CWE-311
CVE-2017-9604
HIGH
KDE kmail and messagelib < 5.5.2 - Missing Encryption of Sensitive Data via Send Later Feature
CVSS 7.5
CVE-2017-9045
MEDIUM
Google I/O <5.1.4 - Info Disclosure
CVSS 5.9
CVE-2017-8769
MEDIUM
WhatsApp < 2.16.323 - Unencrypted Sensitive Media File Storage
CVSS 4.6
CVE-2017-7485
MEDIUM
PostgreSQL <9.3.17, 9.4.x <9.4.12, 9.5.x <9.5.7, 9.6.x <9.6.3 - SSRF
CVSS 5.9
CVE-2017-8221
HIGH
Wireless IP Camera (P2P) WIFICAM - Missing Encryption of Sensitive Data via Cleartext UDP Tunnel
CVSS 7.5
CVE-2017-5042
MEDIUM
Google Chrome <57.0.2987.98-57.0.2987.108 - SSRF
CVSS 5.7
CVE-2017-6445
HIGH
OpenELEC 6.0.3, 7.0.1, 8.0.4 - Missing Encryption of Sensitive Data in Auto-Update Feature
CVSS 8.1
CVE-2017-6297
MEDIUM
MikroTik RouterOS 6.83.3 and 6.37.4 - Missing Encryption of Sensitive Data in L2TP Client
CVSS 5.9
CVE-2016-10697
HIGH
react-native-baidu-voice-synthesizer - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10696
HIGH
windows-latestchromedriver - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10695
HIGH
npm-test-sqlite3-trunk < 4.0.1 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10694
HIGH
alto-saxophone < 2.25.1 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10693
HIGH
pm2-kafka - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10691
HIGH
windows-seleniumjar - Remote Code Execution via MITM Binary Resource Swap
CVSS 8.1
CVE-2016-10690
HIGH
openframe-ascii-image - Remote Code Execution via MITM Resource Swapping
CVSS 8.1
CVE-2016-10689
HIGH
windows-iedriver - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10688
HIGH
Haxe < 3.4.7 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10687
HIGH
windows-selenium-chromedriver - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10686
HIGH
fis-sass-all - Remote Code Execution via MITM Binary Resource Download
CVSS 8.1
CVE-2016-10685
HIGH
pk-app-wonderbox - Remote Code Execution via MITM Binary Resource Swap
CVSS 8.1
CVE-2016-10684
HIGH
healthcenter - Remote Code Execution via MITM Binary Resource Download
CVSS 8.1
CVE-2016-10683
HIGH
arcanist - Remote Code Execution via MITM HTTP Resource Download
CVSS 8.1
CVE-2016-10678
HIGH
serc.js - Remote Code Execution via MITM Binary Resource Swap
CVSS 8.1
CVE-2016-10677
HIGH
google-closure-tools-latest < 0.1.1 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10676
HIGH
rs-brightcove < 0.0.2 - Remote Code Execution via MITM HTTP Resource Download
CVSS 8.1
Details
Vulnerabilities
508
Exploit Likelihood
High