CWE-312
Cleartext Storage of Sensitive Information
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
805 vulnerabilities with CWE-312
CVE-2019-11966
HIGH
HPE IMC <7.3 - Privilege Escalation
CVSS 8.8
CVE-2019-3937
HIGH
Crestron AM-100 and AM-101 - Cleartext Storage of Sensitive Information in Configuration File
CVSS 7.8
CVE-2019-11384
CRITICAL
Zalora app 6.15.1 - Info Disclosure
CVSS 9.8
CVE-2019-0285
CRITICAL
SAP Crystal Reports for Visual Studio - Cleartext Storage of Sensitive Database Credentials
CVSS 9.8
CVE-2019-3612
MEDIUM
McAfee Data Exchange Layer 4.0.0-4.1.1 & Threat Intelligence Exchange 2.0.0-2.3.0 - Sensitive Info Exposure
CVSS 4.4
CVE-2019-3606
HIGH
McAfee Network Security Manager 9.1-9.1.7.75 and 9.2-9.2.7.31 - Cleartext Storage of Sensitive Information in Web Portal
CVSS 7.7
CVE-2019-5765
MEDIUM
Google Chrome on Android < 72.0.3626.81 - Cleartext Storage of Sensitive Information via Debugging Endpoint
CVSS 5.5
CVE-2019-6549
HIGH
PR100088 Modbus Gateway Firmware < r02 - Unauthenticated Plain-Text Credential Exposure via FTP
CVSS 7.2
CVE-2018-16498
MEDIUM
Versa Director - Cleartext Storage of Sensitive Information in Backup Files
CVSS 5.5
CVE-2018-19941
HIGH
QNAP QTS/QuTS Cleartext Storage of Sensitive Information in Cookie
CVSS 7.5
CVE-2018-2028
MEDIUM
IBM Maximo Asset Management 7.6 - Authenticated Cleartext Storage of Sensitive Information
CVSS 6.5
CVE-2018-20008
MEDIUM
iBall Baton iB-WRB302N20122017 - Info Disclosure
CVSS 6.8
CVE-2018-1882
MEDIUM
IBM Spectrum Protect Backup-Archive Client 7.1.0.0-7.1.8.4 Cleartext Sensitive Info in Trace File
CVSS 4.7
CVE-2018-19981
HIGH
Amazon AWS SDK <=2.8.5 for Android - Info Disclosure
CVSS 7.2
CVE-2018-17499
LOW
Envoy Passport - Sensitive Information Exposure via Unencrypted Log Storage
CVSS 2.9
CVE-2018-17489
LOW
HID Global EasyLobby Solo - Cleartext Storage of Sensitive Information in Visitor Database
CVSS 2.9
CVE-2018-12572
HIGH
Avast Free Antivirus <19.1.2360 - Info Disclosure
CVSS 7.8
CVE-2018-16889
MEDIUM
Ceph < 13.2.4 - Sensitive Information Disclosure in Debug Logging
CVSS 5.5
CVE-2018-19009
HIGH
Pilz PNOZmulti Configurator < 10.9.0 - Authenticated Cleartext Storage of Sensitive Credential Data
CVSS 7.8
CVE-2018-18984
MEDIUM
Medtronic CareLink and Encore Programmers - Cleartext Storage of Sensitive Information
CVSS 4.6
CVE-2018-18641
CRITICAL
GitLab 8.10.0-11.2.6 11.3.0-11.3.7 11.4.0-11.4.2 - Cleartext Storage of Sensitive Information
CVSS 9.8
CVE-2018-5559
LOW
Rapid7 Komand <0.41.0 - Info Disclosure
CVSS 3.4
CVE-2018-19279
MEDIUM
PRIMX ZoneCentral <6.1.2236 - Info Disclosure
CVSS 4.3
CVE-2018-1877
MEDIUM
IBM Robotic Process Automation with Automation Anywhere 11 - Cleartext Storage of Sensitive Information
CVSS 6.2
CVE-2018-18394
CRITICAL
Moxa ThingsPro 2.1 - Cleartext Storage of Sensitive Information
CVSS 9.8
Details
Vulnerabilities
805