CWE-311

High likelihood

Missing Encryption of Sensitive Data

Parent: CWE-693 - Protection Mechanism Failure

The product does not encrypt sensitive or critical information before storage or transmission.

508 vulnerabilities with CWE-311
CVE-2016-10587 HIGH
wasdk < 1.0.54 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10585 HIGH
libxl < 0.3.0 - Remote Code Execution via MITM HTTP Resource Download
CVSS 8.1
CVE-2016-10582 HIGH
closurecompiler < 1.6.1 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10581 HIGH
Steroids < 4.1.27 - Remote Code Execution via MITM Tarball Swap
CVSS 8.1
CVE-2016-10580 HIGH
nodewebkit < 0.11.2-1 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10579 HIGH
Chromedriver < 2.26.1 - Remote Code Execution via MITM Binary Swap
CVSS 8.1
CVE-2016-10576 HIGH
fuseki < 1.0.1 - Remote Code Execution via MITM Binary Resource Download
CVSS 8.1
CVE-2016-10575 HIGH
Kindlegen < 1.1.0 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10574 HIGH
apk-parser3 < 0.1.3 - Remote Code Execution via MITM Binary Download
CVSS 8.1
CVE-2016-10572 HIGH
mongodb-instance < 0.0.3 - Remote Code Execution via MITM Binary Replacement
CVSS 8.1
CVE-2016-10571 HIGH
bkjs-wand < 0.3.2 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10569 HIGH
embedza < 1.2.4 - Remote Code Execution via MITM JavaScript Resource Download
CVSS 8.1
CVE-2016-10565 HIGH
operadriver < 0.2.3 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10564 HIGH
apk-parser < 0.1.6 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10563 HIGH
go-ipfs-dep < 0.4.4 - Man-in-the-Middle Attack via Insecure HTTP Download
CVSS 8.1
CVE-2016-10562 HIGH
iedriver < 3.0.0 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10560 HIGH
galenframework-cli < 2.3.1 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10557 HIGH
appium-chromedriver < 2.9.4 - Remote Code Execution via HTTP Binary Download
CVSS 8.1
CVE-2016-10552 HIGH
igniteui < 0.0.5 - Insecure Resource Download via HTTP
CVSS 7.4
CVE-2016-10698 HIGH
mystem-fix < 0.0.5 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10682 HIGH
massif < 0.0.1-1 - Remote Code Execution via MITM Resource Swapping
CVSS 8.1
CVE-2016-10681 HIGH
roslibjs < 0.18.0 - Remote Code Execution via MITM Binary Resource Swapping
CVSS 8.1
CVE-2016-10680 HIGH
adamvr-geoip-lite < 1.2.0 - Man-in-the-Middle Attack via HTTP Resource Download
CVSS 8.1
CVE-2016-10679 HIGH
selenium-standalone-painful < 2.39.0-2.7.0 - Remote Code Execution via HTTP Resource Download
CVSS 8.1
CVE-2016-10674 HIGH
limbus-buildgen < 0.1.1 - Remote Code Execution via MITM HTTP Resource Download
CVSS 8.1
Details
Vulnerabilities 508
Exploit Likelihood High