CWE-312

Cleartext Storage of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

786 vulnerabilities with CWE-312
CVE-2024-55928 MEDIUM
Xerox Workplace Suite - Info Disclosure
CVSS 6.5
CVE-2024-12079 LOW
Ecovacs Deebot 900 Firmware - Cleartext Storage
CVSS 3.3
CVE-2024-46505 CRITICAL
Infoblox BloxOne v2.4 - Info Disclosure
CVSS 9.1
CVE-2024-56362 HIGH
Navidrome < 0.54.1 - Cleartext Storage
CVSS 7.1
CVE-2024-55196 HIGH
Gophish - Cleartext Storage
CVSS 7.5
CVE-2024-50570 MEDIUM
Fortinet Forticlient < 7.0.14 - Cleartext Storage
CVSS 5.0
CVE-2024-51175 HIGH
H3C switch h3c-S1526 - Info Disclosure
CVSS 7.5
CVE-2024-35117 MEDIUM
IBM Openpages With Watson < 9.0.0.2 - Cleartext Storage
CVSS 4.4
CVE-2024-46340 CRITICAL
Tp-link Tl-wr845n Firmware - Cleartext Storage
CVSS 9.8
CVE-2024-40582 HIGH
Pentaminds CuroVMS v2.0.1 - Info Disclosure
CVSS 7.5
CVE-2024-55582 MEDIUM
Oxide <6 - Info Disclosure
CVSS 5.7
CVE-2024-54127 MEDIUM
TP-Link Archer C50 - Info Disclosure
CVE-2024-12094 MEDIUM
Tinxy - Info Disclosure
CVE-2024-42451 MEDIUM
Veeam Backup & Replication - Info Disclosure
CVSS 6.5
CVE-2024-53979 HIGH
ibm.ibm_zhmc - Info Disclosure
CVSS 8.2
CVE-2024-53865 HIGH
zhmcclient - Info Disclosure
CVSS 8.2
CVE-2024-29146 MEDIUM
Product with vulnerability - Info Disclosure
CVSS 5.9
CVE-2024-46383 LOW
Hathway Skyworth Router CM5100-511 v4.1.1.24 - Info Disclosure
CVSS 2.4
CVE-2024-52525 LOW
Nextcloud Server < 28.0.12 - Cleartext Storage
CVSS 1.8
CVE-2024-11159 MEDIUM
Mozilla Thunderbird < 128.4.3 - Cleartext Storage
CVSS 4.3
CVE-2024-43429 MEDIUM
Moodle < 4.1.12 - Cleartext Storage
CVSS 5.3
CVE-2024-51993 LOW
Combodo iTop <3.2.0 - Info Disclosure
CVSS 3.4
CVE-2024-34891 MEDIUM
Bitrix24 - Cleartext Storage
CVSS 6.8
CVE-2024-10523 MEDIUM
Tp-link Tapo H100 Firmware < 1.5.22 - Cleartext Storage
CVSS 4.6
CVE-2024-7783 HIGH
Mintplexlabs Anythingllm < 1.2.1 - Cleartext Storage
CVSS 7.5
Details
Vulnerabilities 786