CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

818 vulnerabilities with CWE-312
CVE-2023-31925 MEDIUM
Brocade SANnav <2.3.0, <2.2.2a - Info Disclosure
CVSS 5.4
CVE-2023-31423 MEDIUM
Brocade SANnav <2.3.0-2.2.2a - Info Disclosure
CVSS 5.7
CVE-2023-3489 HIGH
Brocade Fabric OS v9.2.0 - Cleartext Storage of Sensitive Information in SupportSave File
CVSS 8.6
CVE-2023-4392 LOW
Control iD Gerencia Web <1.30 - Info Disclosure
CVSS 3.7
CVE-2023-40354 MEDIUM
MariaDB MaxScale < 2.5.28 - Cleartext Storage of Sensitive Information in Configuration File
CVSS 6.5
CVE-2023-31041 HIGH
Insyde InsydeH2O 5.0-5.5 - Cleartext Storage of Sensitive Information in SysPasswordDxe
CVSS 7.5
CVE-2023-39210 MEDIUM
Zoom Client SDK for Windows <5.15.0 - Info Disclosure
CVSS 5.5
CVE-2023-36136 MEDIUM
PHPJabbers Class Scheduling System 1.0 - Info Disclosure
CVSS 6.5
CVE-2023-39440 MEDIUM
SAP BusinessObjects Business Intelligence 420 - Cleartext Storage of Sensitive Information
CVSS 4.4
CVE-2023-39903 MEDIUM
Fujitsu Software Infrastructure Manager < 2.8.0.061 - Cleartext Sensitive Information Storage
CVSS 5.9
CVE-2023-33373 CRITICAL
Connected IO <2.1.0 - Info Disclosure
CVSS 9.8
CVE-2023-39379 HIGH
Fujitsu Software Infrastructure Manager 2.8.0.060 - Cleartext Storage of Sensitive Information in Maintenance Data
CVSS 7.5
CVE-2023-30146 HIGH
Assmann HT-IP211HDP Firmware 2.000.022 - Unauthenticated Cleartext Storage of Sensitive Information
CVSS 7.5
CVE-2023-39144 HIGH
Element55 KnowMore <21 - Info Disclosure
CVSS 7.5
CVE-2023-33742 HIGH
TeleAdapt RoomCast <3.1 - Info Disclosure
CVSS 7.5
CVE-2023-30367 HIGH
mRemoteNG <= 1.76.20 and <= 1.77.3-dev - Cleartext Storage of Sensitive Information in Memory
CVSS 7.5
CVE-2023-32455 MEDIUM
Dell Wyse ThinOS < 9.3.2102 - Unauthenticated Sensitive Information Disclosure via Log Files
CVSS 5.5
CVE-2023-32447 MEDIUM
Dell Wyse ThinOS < 9.4.2103 - Sensitive Information Disclosure via Log File
CVSS 5.5
CVE-2023-32446 MEDIUM
Dell Wyse ThinOS < 2303 (9.4.1141) - Unauthenticated Sensitive Information Disclosure via Log Files
CVSS 5.5
CVE-2023-32483 MEDIUM
Dell Wyse Management Suite < 4.0 - Authenticated Sensitive Information Disclosure via Log Files
CVSS 4.4
CVE-2023-3762 MEDIUM
Intergard SGS 8.7.0 - Info Disclosure
CVSS 4.3
CVE-2023-37468 MEDIUM
Feedbacksystem 1.5.0-1.9.1 - Cleartext Storage of Sensitive Information in LDAP Login
CVSS 6.0
CVE-2023-31821 HIGH
ALBIS Co. ALBIS <13.6.1 - Info Disclosure
CVSS 7.5
CVE-2023-20207 MEDIUM
Cisco Duo Authentication Proxy - Info Disclosure
CVSS 4.9
CVE-2023-35699 MEDIUM
SICK ICR890-4 Firmware < 2.5.0 - Unauthenticated Sensitive Information Exposure via SD Card
CVSS 5.3
Details
Vulnerabilities 818