CWE-312
Cleartext Storage of Sensitive Information
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
818 vulnerabilities with CWE-312
CVE-2024-28387
HIGH
axonaut < 3.2.0 - Sensitive Information Exposure via log.txt
CVSS 7.5
CVE-2024-22084
HIGH
Espec G5 <1.1.4.15 - Info Disclosure
CVSS 7.5
CVE-2024-24375
HIGH
jfinalcms 5.0.0 - SQL Injection via Admin Name Parameter
CVSS 7.5
CVE-2024-20292
MEDIUM
Cisco Duo Authentication for Windows Logon and RDP - Info Disclosure
CVSS 4.4
CVE-2024-24488
MEDIUM
Tendacn Cp3 Firmware - Cleartext Storage
CVSS 5.5
CVE-2023-28912
MEDIUM
Volkswagen MIB3 infotainment system MIB3 OI MQB <0304 - Cleartext Storage of Sensitive Information
CVSS 5.7
CVE-2023-5359
LOW
W3 Total Cache <= 2.7.5 - Unauthenticated Sensitive Information Exposure via Google OAuth API Secrets
CVSS 3.7
CVE-2023-49113
HIGH
Kiuwan Local Analyzer - Info Disclosure
CVSS 7.8
CVE-2023-27370
MEDIUM
NETGEAR RAX30 Firmware < 1.0.10.94 - Cleartext Storage of Sensitive Information in Device Configuration
CVSS 5.7
CVE-2023-46294
LOW
Teledyne FLIR M300 <2.00-19 - Info Disclosure
CVSS 3.4
CVE-2023-49341
HIGH
Newland Nquire 1000 Interactive Kiosk <V1.00.011 - Info Disclosure
CVSS 7.5
CVE-2023-50957
HIGH
IBM Storage Defender - Resiliency Service 2.0 - Cleartext Storage of Sensitive Information
CVSS 8.0
CVE-2023-31002
MEDIUM
IBM Security Access Manager Container <10.0.6.1 - Info Disclosure
CVSS 5.1
CVE-2023-6874
HIGH
Silabs Gecko Software Development Kit < 4.4.0 - Denial of Service via NWK Sequence Number Manipulation
CVSS 7.5
CVE-2023-51702
MEDIUM
Apache Airflow 2.3.0-2.6.0 Sensitive Information Exposure in Deferrable Mode
CVSS 6.5
CVE-2023-27098
HIGH
TP-Link Tapo <v2.12.703 - Info Disclosure
CVSS 7.5
CVE-2023-6250
HIGH
BestWebSoft's Like & Share <2.74 - Info Disclosure
CVSS 7.5
CVE-2023-50294
MEDIUM
GROWI < 6.0.6 - Cleartext Storage of Sensitive Information in App Settings
CVSS 6.5
CVE-2023-5384
HIGH
Redhat Data Grid < 8.4.6 - Cleartext Storage
CVSS 7.2
CVE-2023-50719
HIGH
XWiki Platform 7.2-milestone-2-14.10.14 - Unauthenticated Exposure of Sensitive Information via Solr Search
CVSS 7.5
CVE-2023-50777
MEDIUM
Jenkins PaaSLane Estimate Plugin <= 1.0.4 - Cleartext Storage of Sensitive Information
CVSS 4.3
CVE-2023-50776
MEDIUM
Jenkins PaaSLane Estimate Plugin <= 1.0.4 - Cleartext Storage of Sensitive Information in Job config.xml
CVSS 4.3
CVE-2023-50773
MEDIUM
Jenkins Dingding JSON Pusher Plugin < 2.0 - Cleartext Storage of Sensitive Information
CVSS 4.3
CVE-2023-50772
MEDIUM
Jenkins Dingding JSON Pusher Plugin <= 2.0 - Cleartext Storage of Sensitive Information in Job Config
CVSS 4.3
CVE-2023-40238
MEDIUM
Fujitsu Esprimo Firmware - Cleartext Storage of Sensitive Information
CVSS 5.5
Details
Vulnerabilities
818