CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

804 vulnerabilities with CWE-312
CVE-2023-33742 HIGH
TeleAdapt RoomCast <3.1 - Info Disclosure
CVSS 7.5
CVE-2023-30367 HIGH
mRemoteNG <= 1.76.20 and <= 1.77.3-dev - Cleartext Storage of Sensitive Information in Memory
CVSS 7.5
CVE-2023-32455 MEDIUM
Dell Wyse ThinOS < 9.3.2102 - Unauthenticated Sensitive Information Disclosure via Log Files
CVSS 5.5
CVE-2023-32447 MEDIUM
Dell Wyse ThinOS < 9.4.2103 - Sensitive Information Disclosure via Log File
CVSS 5.5
CVE-2023-32446 MEDIUM
Dell Wyse ThinOS < 2303 (9.4.1141) - Unauthenticated Sensitive Information Disclosure via Log Files
CVSS 5.5
CVE-2023-32483 MEDIUM
Dell Wyse Management Suite < 4.0 - Authenticated Sensitive Information Disclosure via Log Files
CVSS 4.4
CVE-2023-3762 MEDIUM
Intergard SGS 8.7.0 - Info Disclosure
CVSS 4.3
CVE-2023-37468 MEDIUM
Feedbacksystem 1.5.0-1.9.1 - Cleartext Storage of Sensitive Information in LDAP Login
CVSS 6.0
CVE-2023-31821 HIGH
ALBIS Co. ALBIS <13.6.1 - Info Disclosure
CVSS 7.5
CVE-2023-20207 MEDIUM
Cisco Duo Authentication Proxy - Info Disclosure
CVSS 4.9
CVE-2023-35699 MEDIUM
SICK ICR890-4 Firmware < 2.5.0 - Unauthenticated Sensitive Information Exposure via SD Card
CVSS 5.3
CVE-2023-3395 MEDIUM
TWinSoft Configuration Tool - Info Disclosure
CVSS 6.5
CVE-2023-27243 HIGH
Makves DCAP <3.0.0.122 - Info Disclosure
CVSS 7.5
CVE-2023-1897 CRITICAL
Atlas Copco Power Focus 6000 - Info Disclosure
CVSS 9.4
CVE-2023-22584 HIGH
Danfoss AK-EM100 Firmware < 2.2.0.12 - Cleartext Storage of Sensitive Information
CVSS 7.5
CVE-2023-27706 HIGH
Bitwarden < 2023.4.0 - Cleartext Storage of Sensitive Biometric Keys in Windows Credential Manager
CVSS 7.1
CVE-2023-28713 HIGH
CONPROSYS HMI System <3.5.3 - Info Disclosure
CVSS 8.1
CVE-2023-28345 MEDIUM
Faronics Insight 10.0.19045 - Cleartext Storage of Sensitive Information in Teacher Console API Endpoint
CVSS 4.6
CVE-2023-32448 MEDIUM
Dell PowerPath 7.0-7.2 - Cleartext Storage of Sensitive License Key
CVSS 5.5
CVE-2023-2863 LOW
Simple Design Daily Journal 1.012.GP.B - Info Disclosure
CVSS 2.3
CVE-2023-22878 MEDIUM
IBM InfoSphere Information Server 11.7 - Cleartext Storage of Sensitive Information
CVSS 6.2
CVE-2023-32983 MEDIUM
Jenkins Ansible Plugin < 204.v8191fd551eb_f - Cleartext Storage of Sensitive Information in Configuration Form
CVSS 5.3
CVE-2023-32982 MEDIUM
Jenkins Ansible Plugin < 204.v8191fd551eb_f - Cleartext Storage of Sensitive Information in Job config.xml
CVSS 4.3
CVE-2023-20914 MEDIUM
Android 11 - Local Information Disclosure via AdminRestrictedPermissionsUtils Permissions Bypass
CVSS 5.5
CVE-2023-31408 MEDIUM
Cleartext Storage of Sensitive Information - XSS
CVSS 5.3
Details
Vulnerabilities 804