CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

817 vulnerabilities with CWE-312
CVE-2025-57806 MEDIUM
Local Deep Research <0.6.7 - Info Disclosure
CVE-2025-55443 CRITICAL
Telpo MDM 1.4.6-1.4.9 - Cleartext Storage of Sensitive Credentials in Log Files
CVSS 9.1
CVE-2025-7426 CRITICAL
MINOVA TTA - Unauthenticated Exposure of FTP Credentials via Debug Port
CVE-2025-2182 MEDIUM
Palo Alto Networks PAN-OS - Info Disclosure
CVE-2025-2181 MEDIUM
Palo Alto Networks Checkov - Info Disclosure
CVE-2025-55280 MEDIUM
ZKTeco WL20 Biometric Attendance System <= ZLM31-FXO1-3.1.8 - Cleartext Storage of Sensitive Information in Firmware
CVE-2025-54464 HIGH
ZKTeco WL20 Biometric Attendance System <= ZLM31-FXO1-3.1.8 - Cleartext Storage of Sensitive Information in Firmware
CVE-2025-40753 MEDIUM
POWER METER SICAM - Info Disclosure
CVSS 6.2
CVE-2025-40752 MEDIUM
POWER METER SICAM - Info Disclosure
CVSS 6.2
CVE-2025-51055 HIGH
Vedo Suite <2024.17 - Info Disclosure
CVSS 8.6
CVE-2025-8528 LOW
Exrick xboot <3.3.4 - Info Disclosure
CVSS 3.7
CVE-2025-7738 MEDIUM
Ansible django-ansible-base < 2025.7.22 - Cleartext Storage of Sensitive Information in Gateway API
CVSS 4.4
CVE-2025-50777 HIGH
AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera V1.00.02 - Incorrect Access Control
CVSS 7.8
CVE-2025-54422 MEDIUM
Sandboxie < 1.16.2 - Insufficiently Protected Credentials via Shared Memory and Command-Line Arguments
CVSS 5.5
CVE-2025-54538 MEDIUM
JetBrains TeamCity < 2025.07 - Cleartext Storage of Sensitive Information via hg pull Command
CVSS 5.5
CVE-2025-54537 MEDIUM
JetBrains TeamCity < 2025.07 - Cleartext Storage of Sensitive Information in Memory Snapshots
CVSS 5.5
CVE-2025-30124 CRITICAL
Marbella KR8s Dashcam FF 2.0.8 - Info Disclosure
CVSS 9.8
CVE-2025-4394 MEDIUM
Medtronic MyCareLink - Info Disclosure
CVSS 6.8
CVE-2025-44649 HIGH
TRENDnet TEW-WLC100P 2.03b03 - Cleartext Storage of Sensitive Information in IKE Aggressive Mode
CVSS 7.5
CVE-2025-41458 MEDIUM
Two App Studio Journey <5.5.9 - Info Disclosure
CVSS 5.5
CVE-2025-7397 HIGH
Brocade ASCG < 3.3.0 - Authenticated Cleartext Storage of Sensitive Information in CLI Command History
CVSS 7.1
CVE-2025-32353 HIGH
Kaseya Rapid Fire Tools Network Detective <2.0.16.0 - Info Disclosure
CVSS 8.2
CVE-2025-53758 MEDIUM
Digisol DG-GR6821AC Router - Info Disclosure
CVE-2025-53755 MEDIUM
Digisol DG-GR6821AC Router - Info Disclosure
CVE-2025-53742 MEDIUM
Jenkins Applitools Eyes Plugin <1.16.5 - Info Disclosure
CVSS 6.5
Details
Vulnerabilities 817