CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

818 vulnerabilities with CWE-312
CVE-2024-40750 MEDIUM
Linksys Velop Pro 6E - Info Disclosure
CVSS 5.3
CVE-2024-40594 LOW
OpenAI ChatGPT <2024-07-05 - Info Disclosure
CVSS 2.3
CVE-2024-39846 LOW
NewPass < 1.2.0 - Cleartext Storage of Sensitive Information
CVSS 3.5
CVE-2024-29954 MEDIUM
Brocade Fabric OS <9.2.1-8.2.3e - Info Disclosure
CVSS 5.9
CVE-2024-36497 CRITICAL
Faronics WINSelect 8.30.xx.903 - Cleartext Storage of Sensitive Information
CVSS 9.1
CVE-2024-36589 MEDIUM
Annonshop.app - Cleartext Storage of Sensitive Credentials
CVSS 4.3
CVE-2024-38280 MEDIUM
Motorola Vigilant Fixed LPR COMS Box Firmware <= 3.1.171.9 - Cleartext Credential Storage
CVSS 4.6
CVE-2024-28024 MEDIUM
HitachiEnergy FOXMAN-UN/UNEM - Cleartext Storage of Sensitive Information
CVSS 4.1
CVE-2024-36790 HIGH
Netgear WNR614 JNR1010V2/N300-V1.1.0.54_1.0.1 - Cleartext Storage of Sensitive Information
CVSS 8.8
CVE-2024-4540 HIGH
Keycloak < 24.0.5 - Cleartext Storage of Sensitive Information in OAuth 2.0 PAR KC_RESTART Cookie
CVSS 7.5
CVE-2024-36119 LOW
Statamic CMS 5.3.0-5.6.1 - Cleartext Storage of Sensitive Information in User Registration Form
CVSS 1.8
CVE-2024-33471 HIGH
AVTECH Room Alert 4E <4.4.0 - Info Disclosure
CVSS 7.2
CVE-2024-33470 MEDIUM
AVTECH Room Alert 4E <4.4.0 - Info Disclosure
CVSS 4.9
CVE-2024-31840 MEDIUM
Italtel Embrace 1.6.4 - Info Disclosure
CVSS 6.5
CVE-2024-31486 MEDIUM
OPUPI0 AMQP/MQTT <V5.30 - Info Disclosure
CVSS 5.3
CVE-2024-4840 MEDIUM
OpenStack Platform - Info Disclosure
CVSS 5.5
CVE-2024-28327 HIGH
Asus RT-N12+ B1 - Cleartext Storage of Sensitive Information
CVSS 8.4
CVE-2024-4235 LOW
Netgear DG834Gv5 1.6.01.34 - Info Disclosure
CVSS 2.7
CVE-2024-31587 MEDIUM
SecuSTATION Camera <V2.5.5.3116-S50-SMA-B20160811A - Info Disclosure
CVSS 6.5
CVE-2024-3742 HIGH
Electrolink transmitter - Info Disclosure
CVSS 7.5
CVE-2024-32474 HIGH
Sentry 24.3.0-24.4.1 - Cleartext Password Exposure in Superuser Authentication Logs
CVSS 7.3
CVE-2024-29956 MEDIUM
Brocade SANnav <2.3.1, 2.3.0a - Info Disclosure
CVSS 6.5
CVE-2024-29952 MEDIUM
Brocade SANnav <2.3.1-2.3.0a - Info Disclosure
CVSS 5.5
CVE-2024-23584 MEDIUM
HCL BigFix Enterprise Suite Asset Discovery 109 - Cleartext Storage of Sensitive Information in Windows Registry
CVSS 6.6
CVE-2024-28065 MEDIUM
Unify CP IP Phone <1.10.4.3 - Info Disclosure
CVSS 5.9
Details
Vulnerabilities 818