CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

786 vulnerabilities with CWE-312
CVE-2024-28024 MEDIUM
Hitachienergy Foxman-un - Cleartext Storage
CVSS 4.1
CVE-2024-36790 HIGH
Netgear WNR614 - Info Disclosure
CVSS 8.8
CVE-2024-4540 HIGH
Org.keycloak Keycloak-services < 24.0.5 - Information Disclosure
CVSS 7.5
CVE-2024-36119 LOW
Statamic <5.6.1 - Info Disclosure
CVSS 1.8
CVE-2024-33471 HIGH
AVTECH Room Alert 4E <4.4.0 - Info Disclosure
CVSS 7.2
CVE-2024-33470 MEDIUM
AVTECH Room Alert 4E <4.4.0 - Info Disclosure
CVSS 4.9
CVE-2024-31840 MEDIUM
Italtel Embrace 1.6.4 - Info Disclosure
CVSS 6.5
CVE-2024-31486 MEDIUM
OPUPI0 AMQP/MQTT <V5.30 - Info Disclosure
CVSS 5.3
CVE-2024-4840 MEDIUM
OpenStack Platform - Info Disclosure
CVSS 5.5
CVE-2024-28327 HIGH
Asus RT-N12+ B1 - Info Disclosure
CVSS 8.4
CVE-2024-4235 LOW
Netgear DG834Gv5 1.6.01.34 - Info Disclosure
CVSS 2.7
CVE-2024-31587 MEDIUM
SecuSTATION Camera <V2.5.5.3116-S50-SMA-B20160811A - Info Disclosure
CVSS 6.5
CVE-2024-3742 HIGH
Electrolink transmitter - Info Disclosure
CVSS 7.5
CVE-2024-32474 HIGH
Sentry <24.4.1 - Info Disclosure
CVSS 7.3
CVE-2024-29956 MEDIUM
Brocade SANnav <2.3.1, 2.3.0a - Info Disclosure
CVSS 6.5
CVE-2024-29952 MEDIUM
Brocade SANnav <2.3.1-2.3.0a - Info Disclosure
CVSS 5.5
CVE-2024-23584 MEDIUM
NMAP Importer - Info Disclosure
CVSS 6.6
CVE-2024-28065 MEDIUM
Unify CP IP Phone <1.10.4.3 - Info Disclosure
CVSS 5.9
CVE-2024-28387 HIGH
Axonaut < 3.2.0 - Cleartext Storage
CVSS 7.5
CVE-2024-22084 HIGH
Espec G5 <1.1.4.15 - Info Disclosure
CVSS 7.5
CVE-2024-24375 HIGH
Jfinalcms - SQL Injection
CVSS 7.5
CVE-2024-20292 MEDIUM
Cisco Duo Authentication for Windows Logon and RDP - Info Disclosure
CVSS 4.4
CVE-2024-24488 MEDIUM
Tendacn Cp3 Firmware - Cleartext Storage
CVSS 5.5
CVE-2023-28912 MEDIUM
MIB3 - Info Disclosure
CVSS 5.7
CVE-2023-5359 LOW
Boldgrid W3 Total Cache < 2.7.6 - Information Disclosure
CVSS 3.7
Details
Vulnerabilities 786