CWE-311

High likelihood

Missing Encryption of Sensitive Data

Parent: CWE-693 - Protection Mechanism Failure

The product does not encrypt sensitive or critical information before storage or transmission.

506 vulnerabilities with CWE-311
CVE-2022-38458 MEDIUM
Netgear Orbi Router RBR750 4.6.8.5 - Info Disclosure
CVSS 6.5
CVE-2022-21940 HIGH
Johnson Controls SCT <14.2.3, 15.0.3 - Info Disclosure
CVSS 7.5
CVE-2022-47715 MEDIUM
Lastyard Last Yard - Missing Encryption
CVSS 5.3
CVE-2022-38658 HIGH
BigFix - Info Disclosure
CVSS 7.7
CVE-2022-4683 MEDIUM
GitHub usememos/memos <0.9.0 - Info Disclosure
CVSS 6.5
CVE-2022-4409 HIGH
thorsten/phpmyfaq <3.1.9 - Info Disclosure
CVSS 7.5
CVE-2022-3781 MEDIUM
Devolutions Server < 2022.3.2 - Insufficiently Protected Credentials
CVSS 6.5
CVE-2022-40295 MEDIUM
Phppointofsale Php Point OF Sale - Information Disclosure
CVSS 4.9
CVE-2022-41627 MEDIUM
AliveCor's KardiaMobile - Info Disclosure
CVSS 4.8
CVE-2022-35860 MEDIUM
Corsair K63 Wireless <3.1.3 - Info Disclosure
CVSS 6.8
CVE-2022-3251 MEDIUM
GitHub ikus060/minarca <4.2.2 - Info Disclosure
CVSS 5.3
CVE-2022-3250 MEDIUM
GitHub rdiffweb <2.4.6 - Info Disclosure
CVSS 5.3
CVE-2022-39014 MEDIUM
SAP BusinessObjects <4.30 - Info Disclosure
CVSS 5.3
CVE-2022-3174 HIGH
GitHub ikus060/rdiffweb <2.4.2 - Info Disclosure
CVSS 7.5
CVE-2022-26390 MEDIUM
Baxter Spectrum WBM - Info Disclosure
CVSS 4.2
CVE-2022-38194 MEDIUM
Esri Portal for ArcGIS <10.8.1 - Info Disclosure
CVSS 6.7
CVE-2022-34307 MEDIUM
IBM Cics TX - Missing Encryption
CVSS 4.3
CVE-2022-31085 MEDIUM
LDAP Account Manager <8.0 - Info Disclosure
CVSS 6.1
CVE-2022-30237 HIGH
Schneider-electric Wiser Smart Eer21000 Firmware - Missing Encryption
CVSS 8.2
CVE-2022-24045 MEDIUM
Desigo DXR2 < V01.21.142.5-22 - Info Disclosure
CVSS 6.5
CVE-2022-26281 HIGH
BigAnt Server <5.6.06 - Info Disclosure
CVSS 7.5
CVE-2022-27225 MEDIUM
Gradle Enterprise < 2021.4.3 - Missing Encryption
CVSS 6.5
CVE-2022-26157 MEDIUM
Cherwell Service Mgmt <10.2.3 - Info Disclosure
CVSS 5.3
CVE-2022-0183 MEDIUM
MIRUPASS - Info Disclosure
CVSS 4.6
CVE-2022-23116 HIGH
Jenkins Conjur Secrets < 1.0.9 - Missing Encryption
CVSS 7.5
Details
Vulnerabilities 506
Exploit Likelihood High