CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

818 vulnerabilities with CWE-312
CVE-2021-20407 MEDIUM
IBM Security Verify Information Queue <1.0.8 - Info Disclosure
CVSS 5.3
CVE-2021-27205 MEDIUM
Telegram < 7.4.0 - Sensitive Information Disclosure via Sandbox Path Storage
CVSS 5.5
CVE-2021-27204 MEDIUM
Telegram < 7.4.0 - Cleartext Storage of Sensitive Information
CVSS 5.5
CVE-2021-27178 HIGH
FiberHome HG6245D Firmware < rp2613 - Cleartext Storage of Sensitive Information in NVRAM
CVSS 7.5
CVE-2021-27176 HIGH
FiberHome HG6245D Firmware < rp2613 - Cleartext Storage of Sensitive Information in wifictl_5g.cfg
CVSS 7.5
CVE-2021-27175 HIGH
FiberHome HG6245D Firmware < rp2613 - Cleartext Storage of Sensitive Information in wifictl_2g.cfg
CVSS 7.5
CVE-2021-27174 HIGH
FiberHome HG6245D Firmware < rp2613 - Cleartext Storage of Sensitive Information in wifi_custom.cfg
CVSS 7.5
CVE-2021-27140 HIGH
FiberHome HG6245D Firmware < RP2613 - Cleartext Storage of Sensitive Information in HTTP Logs
CVSS 7.5
CVE-2021-0337 HIGH
Android -8.1,9,10,11 - Privilege Escalation
CVSS 7.8
CVE-2021-23878 HIGH
McAfee Endpoint Security < 10.7.0 - Cleartext Storage of Sensitive Information in Process Memory
CVSS 7.3
CVE-2021-26550 MEDIUM
SmartFoxServer 2.17.0 - Cleartext Storage of Sensitive Information in server.xml
CVSS 5.5
CVE-2021-20358 MEDIUM
IBM Cloud Pak for Automation <20.0.3 - Info Disclosure
CVSS 6.5
CVE-2021-22300 MEDIUM
Huawei eCNS280_TD V100R005C00 and V100R005C10 - Cleartext Storage of Sensitive Information in Temporary File
CVSS 4.1
CVE-2021-1265 MEDIUM
Cisco Catalyst Center < 2.1.1.0 - Authenticated Cleartext Storage of Sensitive Information via Configuration Archive API
CVSS 6.5
CVE-2020-36887 HIGH
SpinetiX Fusion Digital Signage <3.4.8 - Info Disclosure
CVSS 7.5
CVE-2020-11918 MEDIUM
Siime Eye 14.1.00000001.3.330.0.0.3.14 - Cleartext Storage of Sensitive Information in Backup Files
CVSS 5.4
CVE-2020-15332 CRITICAL
Zyxel CloudCNM SecuManager <3.1.1 - Privilege Escalation
CVSS 9.8
CVE-2020-15325 MEDIUM
Zyxel CloudCNM SecuManager <3.1.1 - Info Disclosure
CVSS 5.3
CVE-2020-14480 MEDIUM
FactoryTalk View - Cleartext Storage of Sensitive Information in RAM
CVSS 5.5
CVE-2020-10053 MEDIUM
SIMATIC RTLS Locating Manager < 2.12 - Cleartext Storage of Sensitive Information in Configuration Files
CVSS 5.5
CVE-2020-15935 MEDIUM
FortiADC <= 5.4.3 and 6.0.0 - Authenticated Cleartext Storage of Sensitive Information in GUI
CVSS 4.3
CVE-2020-19137 HIGH
autumn < 1.0.4 - Unauthenticated Cleartext Storage of Sensitive Information via User API
CVSS 7.5
CVE-2020-36473 LOW
UCWeb UC 12.12.3.1219-12.12.3.1226 - Cleartext Storage of Sensitive Information via HTTP
CVSS 3.7
CVE-2020-18759 HIGH
Dut Computer Control Engineering Co.'s PLC MAC1100 - Info Disclosure
CVSS 7.5
CVE-2020-22741 HIGH
Xuperchain 3.6.0 - Cleartext Storage of Sensitive Information
CVSS 7.5
Details
Vulnerabilities 818