CWE-311

High likelihood

Missing Encryption of Sensitive Data

Parent: CWE-693 - Protection Mechanism Failure

The product does not encrypt sensitive or critical information before storage or transmission.

508 vulnerabilities with CWE-311
CVE-2016-10618 HIGH
node-browser < 0.0.3 - Man-in-the-Middle Attack via HTTP Resource Download
CVSS 8.1
CVE-2016-10617 HIGH
box2d-native < 0.0.8 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10616 HIGH
openframe-image < 0.2.0 - Man-in-the-Middle Attack via HTTP Resource Download
CVSS 8.1
CVE-2016-10615 HIGH
curses < 0.0.10 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10614 HIGH
httpsync - Remote Code Execution via Man-in-the-Middle Binary Swap
CVSS 8.1
CVE-2016-10613 MEDIUM
bionode-sra < 1.0.3 - Man-in-the-Middle Attack via HTTP Resource Download
CVSS 5.9
CVE-2016-10612 HIGH
dalekjs/dalekjs < 0.0.5 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10610 HIGH
unicode-json < 2.0.0 - Man-in-the-Middle Attack via HTTP Resource Download
CVSS 8.1
CVE-2016-10609 HIGH
chromedriver126 < 1.0.15 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10608 HIGH
robot-js < 2.0.0 - Remote Code Execution via MITM Binary Swap
CVSS 7.5
CVE-2016-10607 HIGH
openframe-glslviewer < 0.2.7 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10606 HIGH
grunt-webdriver-qunit < 0.2.6 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10605 HIGH
dalekjs/dalekjs < 0.0.5 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10604 HIGH
dalekjs/dalekjs < 0.0.11 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10603 HIGH
air-sdk < 16.0.0-272-16 - Remote Code Execution via MITM Binary Replacement
CVSS 8.1
CVE-2016-10602 HIGH
haxe < 5.0.10 - Remote Code Execution via MITM HTTP Resource Download
CVSS 8.1
CVE-2016-10600 HIGH
webrtc-native < 1.4.0 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10599 HIGH
node-sauce-connect < 0.1.1 - Remote Code Execution via MITM Binary Swap
CVSS 8.1
CVE-2016-10598 HIGH
arrayfire-js < 0.21.4 - Remote Code Execution via MITM Binary Swap
CVSS 7.5
CVE-2016-10597 MEDIUM
cobalt-cli < 2.3.2 - Missing Encryption of Sensitive Data via HTTP Resource Download
CVSS 5.9
CVE-2016-10596 HIGH
imageoptim < 0.5.0 - Remote Code Execution via MITM Tarball Swap
CVSS 8.1
CVE-2016-10595 HIGH
jdf-sass < 1.0.18 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10594 HIGH
ipip - Man-in-the-Middle Attack via HTTP Resource Download
CVSS 8.1
CVE-2016-10592 HIGH
jser-stat < 4.0.3 - Man-in-the-Middle Attack via HTTP Resource Download
CVSS 8.1
CVE-2016-10588 HIGH
NW < 0.23.6-1 - Missing Encryption
CVSS 8.1
Details
Vulnerabilities 508
Exploit Likelihood High