CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

804 vulnerabilities with CWE-312
CVE-2021-3473 MEDIUM
Lenovo XClarity Controller - Cleartext Transmission of Sensitive Information in FFDC Service Log
CVSS 4.5
CVE-2021-25692 MEDIUM
Teradici PCoIP Connection Manager and Security Gateway 20.07-20.07.1 - Cleartext Smart Card Data in Logs
CVSS 4.6
CVE-2021-28937 HIGH
Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) - Cleartext Storage of Sensitive Information
CVSS 7.5
CVE-2021-22194 MEDIUM
GitLab - Cleartext Storage of Sensitive Information in Redis
CVSS 5.7
CVE-2021-21339 MEDIUM
TYPO3 < 6.2.57, 7.6.51, 8.7.40, 9.5.25, 10.4.14, 11.1.1 - Cleartext Session Identifiers
CVSS 5.9
CVE-2021-26595 MEDIUM
Directus 8.0.0-8.8.1 - Sensitive Information Exposure via API Endpoint
CVSS 5.3
CVE-2021-23827 MEDIUM
Keybase < 5.6.0 (Windows/macOS) < 5.6.1 (Linux) - Cleartext Storage of Sensitive Media in Cache and Uploadtemps
CVSS 5.5
CVE-2021-27549 MEDIUM
Genymotion Desktop <3.2.0 - Info Disclosure
CVSS 5.3
CVE-2021-27233 MEDIUM
Mutare Voice <3.3.8 - Info Disclosure
CVSS 4.9
CVE-2021-27210 MEDIUM
TP-Link Archer C5v 1.7_181221 - Cleartext Storage of Sensitive Information via USER_CFG Parameter
CVSS 6.5
CVE-2021-20408 MEDIUM
IBM Security Verify Information Queue <1.0.8 - Info Disclosure
CVSS 5.5
CVE-2021-20407 MEDIUM
IBM Security Verify Information Queue <1.0.8 - Info Disclosure
CVSS 5.3
CVE-2021-27205 MEDIUM
Telegram < 7.4.0 - Sensitive Information Disclosure via Sandbox Path Storage
CVSS 5.5
CVE-2021-27204 MEDIUM
Telegram < 7.4.0 - Cleartext Storage of Sensitive Information
CVSS 5.5
CVE-2021-27178 HIGH
FiberHome HG6245D Firmware < rp2613 - Cleartext Storage of Sensitive Information in NVRAM
CVSS 7.5
CVE-2021-27176 HIGH
FiberHome HG6245D Firmware < rp2613 - Cleartext Storage of Sensitive Information in wifictl_5g.cfg
CVSS 7.5
CVE-2021-27175 HIGH
FiberHome HG6245D Firmware < rp2613 - Cleartext Storage of Sensitive Information in wifictl_2g.cfg
CVSS 7.5
CVE-2021-27174 HIGH
FiberHome HG6245D Firmware < rp2613 - Cleartext Storage of Sensitive Information in wifi_custom.cfg
CVSS 7.5
CVE-2021-27140 HIGH
FiberHome HG6245D Firmware < RP2613 - Cleartext Storage of Sensitive Information in HTTP Logs
CVSS 7.5
CVE-2021-0337 HIGH
Android -8.1,9,10,11 - Privilege Escalation
CVSS 7.8
CVE-2021-23878 HIGH
McAfee Endpoint Security < 10.7.0 - Cleartext Storage of Sensitive Information in Process Memory
CVSS 7.3
CVE-2021-26550 MEDIUM
SmartFoxServer 2.17.0 - Cleartext Storage of Sensitive Information in server.xml
CVSS 5.5
CVE-2021-20358 MEDIUM
IBM Cloud Pak for Automation <20.0.3 - Info Disclosure
CVSS 6.5
CVE-2021-22300 MEDIUM
Huawei eCNS280_TD V100R005C00 and V100R005C10 - Cleartext Storage of Sensitive Information in Temporary File
CVSS 4.1
CVE-2021-1265 MEDIUM
Cisco Catalyst Center < 2.1.1.0 - Authenticated Cleartext Storage of Sensitive Information via Configuration Archive API
CVSS 6.5
Details
Vulnerabilities 804