CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

804 vulnerabilities with CWE-312
CVE-2025-50777 HIGH
AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera V1.00.02 - Incorrect Access Control
CVSS 7.8
CVE-2025-54422 MEDIUM
Sandboxie < 1.16.2 - Insufficiently Protected Credentials via Shared Memory and Command-Line Arguments
CVSS 5.5
CVE-2025-54538 MEDIUM
JetBrains TeamCity < 2025.07 - Cleartext Storage of Sensitive Information via hg pull Command
CVSS 5.5
CVE-2025-54537 MEDIUM
JetBrains TeamCity < 2025.07 - Cleartext Storage of Sensitive Information in Memory Snapshots
CVSS 5.5
CVE-2025-30124 CRITICAL
Marbella KR8s Dashcam FF 2.0.8 - Info Disclosure
CVSS 9.8
CVE-2025-4394 MEDIUM
Medtronic MyCareLink - Info Disclosure
CVSS 6.8
CVE-2025-44649 HIGH
TRENDnet TEW-WLC100P 2.03b03 - Cleartext Storage of Sensitive Information in IKE Aggressive Mode
CVSS 7.5
CVE-2025-41458 MEDIUM
Two App Studio Journey <5.5.9 - Info Disclosure
CVSS 5.5
CVE-2025-7397 HIGH
Brocade ASCG < 3.3.0 - Authenticated Cleartext Storage of Sensitive Information in CLI Command History
CVSS 7.1
CVE-2025-32353 HIGH
Kaseya Rapid Fire Tools Network Detective <2.0.16.0 - Info Disclosure
CVSS 8.2
CVE-2025-53758 MEDIUM
Digisol DG-GR6821AC Router - Info Disclosure
CVE-2025-53755 MEDIUM
Digisol DG-GR6821AC Router - Info Disclosure
CVE-2025-53742 MEDIUM
Jenkins Applitools Eyes Plugin <1.16.5 - Info Disclosure
CVSS 6.5
CVE-2025-53672 MEDIUM
Jenkins Kryptowire Plugin <0.2 - Info Disclosure
CVSS 6.5
CVE-2025-53670 MEDIUM
Jenkins Nouvola DiveCloud Plugin <1.08 - Info Disclosure
CVSS 6.5
CVE-2025-7215 LOW
FNKvision FNK-GU2 <40.1.7 - Info Disclosure
CVSS 1.6
CVE-2025-27460 HIGH
Endress MEAC300-FNADE4 Firmware - Missing Full Volume Encryption
CVSS 7.6
CVE-2025-53103 MEDIUM
JUnit 5.12.0-5.13.1 - Cleartext Storage of Sensitive Information in Open Test Reporting XML Files
CVSS 5.8
CVE-2025-6224 MEDIUM
juju/utils 4.0.0-4.0.4 - Cleartext Storage of Sensitive Information in Certificate Generation
CVSS 6.5
CVE-2025-47824 LOW
Flock Safety License Plate Reader Firmware <= 2.2 - Cleartext Storage of Sensitive Information
CVSS 2.0
CVE-2025-6748 LOW
Bharti Airtel Thanks App 4.105.4 - Info Disclosure
CVSS 2.1
CVE-2025-47820 LOW
Flock Safety Gunshot Detection Firmware < 1.3 - Cleartext Storage of Sensitive Information
CVSS 2.0
CVE-2025-41647 MEDIUM
Lenze PLC Designer V4 < 4.0.0 - Unauthenticated Cleartext Password Exposure
CVSS 5.5
CVE-2025-48463 LOW
Product uses unencrypted HTTP - Info Disclosure
CVSS 3.1
CVE-2025-45001 HIGH
react-native-keys 0.7.11 - Cleartext Storage of Sensitive Information in Compiled Native Binary
CVSS 7.5
Details
Vulnerabilities 804