CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

882 vulnerabilities with CWE-319
CVE-2024-28275 MEDIUM
Puwell Cloud Tech Co, Ltd 360Eyes Pro <3.9.5.16 - Info Disclosure
CVSS 6.5
CVE-2024-25960 HIGH
Dell PowerScale OneFS 8.2.2.x-9.7.0.x - Cleartext Transmission of Sensitive Information
CVSS 7.3
CVE-2024-25735 CRITICAL
WyreStorm Apollo VX20 - Information Disclosure
CVSS 9.1
CVE-2024-28250 MEDIUM
Cilium 1.14.0-1.14.7 - Cleartext Transmission of Sensitive Information via WireGuard Traffic
CVSS 6.1
CVE-2024-28249 MEDIUM
Cilium < 1.13.13, 1.14.0-1.14.8, 1.15.0-1.15.2 - Cleartext Transmission of Sensitive Information via IPsec Traffic
CVSS 6.1
CVE-2024-0860 HIGH
Softing EdgeAggregator and EdgeConnector - Cleartext Transmission of Sensitive Information
CVSS 8.0
CVE-2024-25650 MEDIUM
Delinea Secret Server 11.4 & Distributed Engine 8.4.3 - Cleartext Sensitive Information Transmission
CVSS 5.9
CVE-2024-26288 HIGH
CHARX SEC-3000/3050/3100/3150 Firmware < 1.5.1 - Unauthenticated Cleartext Transmission of Sensitive Information
CVSS 8.7
CVE-2024-0220 HIGH
B&R Automation Studio < 4.6 and Technology Guarding < 1.4.0 - Cleartext Transmission of Sensitive Information
CVSS 8.3
CVE-2024-25631 MEDIUM
Cilium 1.14.0-1.14.6 - Cleartext Transmission of Sensitive Information via Wireguard Encryption
CVSS 6.1
CVE-2024-25630 MEDIUM
Cilium 1.14.0-1.14.6 - Cleartext Transmission of Sensitive Information in Wireguard Encryption
CVSS 6.1
CVE-2024-21406 HIGH
Windows Printing Service - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2024-0056 HIGH
Microsoft.Data.SqlClient 2.1-2.1.7 and System.Data.SqlClient <4.8.6 - Cleartext Transmission of Sensitive Information
CVSS 8.7
CVE-2023-52951 MEDIUM
Synology Note Station Client < 2.2.4-703 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2023-53881 HIGH
ReyeeOS 1.204.1614 - Man-In-The-Middle
CVSS 8.1
CVE-2023-53875 HIGH
GOM Player 2.3.90.5360 - Remote Code Execution via Internet Explorer Component
CVSS 8.8
CVE-2023-35017 MEDIUM
IBM Security Verify Governance 10.0.2 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2023-4509 MEDIUM
Octopus Server 2018.9.0-2023.4.296 - Cleartext Transmission of Sensitive Information in Audit Log
CVSS 4.3
CVE-2023-27291 MEDIUM
IBM Watson CP4D Data Stores <4.6.3 - Info Disclosure
CVSS 4.5
CVE-2023-47745 MEDIUM
IBM MQ Operator Cleartext Transmission of Sensitive Information
CVSS 6.2
CVE-2023-39245 CRITICAL
DELL ESI for SAP LAMA < 10.0.0.0 - Unauthenticated Cleartext Transmission of Sensitive Information in EHAC Component
CVSS 9.8
CVE-2023-45716 LOW
HCL Sametime < 12.0.2 - Cleartext Transmission of Sensitive Information via URL
CVSS 1.7
CVE-2023-42016 MEDIUM
IBM Sterling B2B Integrator 6.0.0.0-6.0.3.8 & 6.1.0.0-6.1.2.3 Cleartext Session Cookie Transmission
CVSS 4.3
CVE-2023-32328 HIGH
IBM Security Verify Access 10.0.0.0-10.0.6.1 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2023-40544 MEDIUM
TCP Communications - Info Disclosure
CVSS 5.7
Details
Vulnerabilities 882
Exploit Likelihood High