CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

804 vulnerabilities with CWE-312
CVE-2024-31486 MEDIUM
OPUPI0 AMQP/MQTT <V5.30 - Info Disclosure
CVSS 5.3
CVE-2024-4840 MEDIUM
OpenStack Platform - Info Disclosure
CVSS 5.5
CVE-2024-28327 HIGH
Asus RT-N12+ B1 - Cleartext Storage of Sensitive Information
CVSS 8.4
CVE-2024-4235 LOW
Netgear DG834Gv5 1.6.01.34 - Info Disclosure
CVSS 2.7
CVE-2024-31587 MEDIUM
SecuSTATION Camera <V2.5.5.3116-S50-SMA-B20160811A - Info Disclosure
CVSS 6.5
CVE-2024-3742 HIGH
Electrolink transmitter - Info Disclosure
CVSS 7.5
CVE-2024-32474 HIGH
Sentry 24.3.0-24.4.1 - Cleartext Password Exposure in Superuser Authentication Logs
CVSS 7.3
CVE-2024-29956 MEDIUM
Brocade SANnav <2.3.1, 2.3.0a - Info Disclosure
CVSS 6.5
CVE-2024-29952 MEDIUM
Brocade SANnav <2.3.1-2.3.0a - Info Disclosure
CVSS 5.5
CVE-2024-23584 MEDIUM
HCL BigFix Enterprise Suite Asset Discovery 109 - Cleartext Storage of Sensitive Information in Windows Registry
CVSS 6.6
CVE-2024-28065 MEDIUM
Unify CP IP Phone <1.10.4.3 - Info Disclosure
CVSS 5.9
CVE-2024-28387 HIGH
axonaut < 3.2.0 - Sensitive Information Exposure via log.txt
CVSS 7.5
CVE-2024-22084 HIGH
Espec G5 <1.1.4.15 - Info Disclosure
CVSS 7.5
CVE-2024-24375 HIGH
jfinalcms 5.0.0 - SQL Injection via Admin Name Parameter
CVSS 7.5
CVE-2024-20292 MEDIUM
Cisco Duo Authentication for Windows Logon and RDP - Info Disclosure
CVSS 4.4
CVE-2024-24488 MEDIUM
Tendacn Cp3 Firmware - Cleartext Storage
CVSS 5.5
CVE-2023-28912 MEDIUM
Volkswagen MIB3 infotainment system MIB3 OI MQB <0304 - Cleartext Storage of Sensitive Information
CVSS 5.7
CVE-2023-5359 LOW
W3 Total Cache <= 2.7.5 - Unauthenticated Sensitive Information Exposure via Google OAuth API Secrets
CVSS 3.7
CVE-2023-49113 HIGH
Kiuwan Local Analyzer - Info Disclosure
CVSS 7.8
CVE-2023-27370 MEDIUM
NETGEAR RAX30 Firmware < 1.0.10.94 - Cleartext Storage of Sensitive Information in Device Configuration
CVSS 5.7
CVE-2023-46294 LOW
Teledyne FLIR M300 <2.00-19 - Info Disclosure
CVSS 3.4
CVE-2023-49341 HIGH
Newland Nquire 1000 Interactive Kiosk <V1.00.011 - Info Disclosure
CVSS 7.5
CVE-2023-50957 HIGH
IBM Storage Defender - Resiliency Service 2.0 - Cleartext Storage of Sensitive Information
CVSS 8.0
CVE-2023-31002 MEDIUM
IBM Security Access Manager Container <10.0.6.1 - Info Disclosure
CVSS 5.1
CVE-2023-6874 HIGH
Silabs Gecko Software Development Kit < 4.4.0 - Denial of Service via NWK Sequence Number Manipulation
CVSS 7.5
Details
Vulnerabilities 804