CWE-311

High likelihood

Missing Encryption of Sensitive Data

Parent: CWE-693 - Protection Mechanism Failure

The product does not encrypt sensitive or critical information before storage or transmission.

508 vulnerabilities with CWE-311
CVE-2017-9604 HIGH
KDE kmail and messagelib < 5.5.2 - Missing Encryption of Sensitive Data via Send Later Feature
CVSS 7.5
CVE-2017-9045 MEDIUM
Google I/O <5.1.4 - Info Disclosure
CVSS 5.9
CVE-2017-8769 MEDIUM
WhatsApp < 2.16.323 - Unencrypted Sensitive Media File Storage
CVSS 4.6
CVE-2017-7485 MEDIUM
PostgreSQL <9.3.17, 9.4.x <9.4.12, 9.5.x <9.5.7, 9.6.x <9.6.3 - SSRF
CVSS 5.9
CVE-2017-8221 HIGH
Wireless IP Camera (P2P) WIFICAM - Missing Encryption of Sensitive Data via Cleartext UDP Tunnel
CVSS 7.5
CVE-2017-5042 MEDIUM
Google Chrome <57.0.2987.98-57.0.2987.108 - SSRF
CVSS 5.7
CVE-2017-6445 HIGH
OpenELEC 6.0.3, 7.0.1, 8.0.4 - Missing Encryption of Sensitive Data in Auto-Update Feature
CVSS 8.1
CVE-2017-6297 MEDIUM
MikroTik RouterOS 6.83.3 and 6.37.4 - Missing Encryption of Sensitive Data in L2TP Client
CVSS 5.9
CVE-2016-10697 HIGH
react-native-baidu-voice-synthesizer - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10696 HIGH
windows-latestchromedriver - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10695 HIGH
npm-test-sqlite3-trunk < 4.0.1 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10694 HIGH
alto-saxophone < 2.25.1 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10693 HIGH
pm2-kafka - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10691 HIGH
windows-seleniumjar - Remote Code Execution via MITM Binary Resource Swap
CVSS 8.1
CVE-2016-10690 HIGH
openframe-ascii-image - Remote Code Execution via MITM Resource Swapping
CVSS 8.1
CVE-2016-10689 HIGH
windows-iedriver - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10688 HIGH
Haxe < 3.4.7 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10687 HIGH
windows-selenium-chromedriver - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10686 HIGH
fis-sass-all - Remote Code Execution via MITM Binary Resource Download
CVSS 8.1
CVE-2016-10685 HIGH
pk-app-wonderbox - Remote Code Execution via MITM Binary Resource Swap
CVSS 8.1
CVE-2016-10684 HIGH
healthcenter - Remote Code Execution via MITM Binary Resource Download
CVSS 8.1
CVE-2016-10683 HIGH
arcanist - Remote Code Execution via MITM HTTP Resource Download
CVSS 8.1
CVE-2016-10678 HIGH
serc.js - Remote Code Execution via MITM Binary Resource Swap
CVSS 8.1
CVE-2016-10677 HIGH
google-closure-tools-latest < 0.1.1 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10676 HIGH
rs-brightcove < 0.0.2 - Remote Code Execution via MITM HTTP Resource Download
CVSS 8.1
Details
Vulnerabilities 508
Exploit Likelihood High