CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

882 vulnerabilities with CWE-319
CVE-2023-38276 MEDIUM
IBM Cognos Dashboards - Info Disclosure
CVSS 5.9
CVE-2023-38275 MEDIUM
IBM Cognos Dashboards - Info Disclosure
CVSS 5.9
CVE-2023-41088 MEDIUM
DexGate - Cleartext Transmission of Sensitive Information
CVSS 6.3
CVE-2023-34441 MEDIUM
Bently Nevada 3500 System TDI Firmware 5.05 - Cleartext Transmission of Sensitive Information
CVSS 6.8
CVE-2023-5461 LOW
Delta Electronics WPLSoft 2.51 - Cleartext Transmission of Sensitive Information in Modbus Handler
CVSS 3.7
CVE-2023-5100 MEDIUM
SICK APU0200 Firmware < 4.0.0.6 - Cleartext Transmission of Sensitive Information via RDT400
CVSS 5.9
CVE-2023-23371 MEDIUM
QVPN 2.2.0-2.2.0.0823 - Authenticated Cleartext Transmission of Sensitive Information
CVSS 5.2
CVE-2023-3361 HIGH
Red Hat OpenShift Data Science - Info Disclosure
CVSS 7.7
CVE-2023-43125 MEDIUM
F5 BIG-IP APM 14.1.5.2-14.1.5.5 & Client 7.2.3 - Cleartext Transmission of Sensitive Info
CVSS 6.8
CVE-2023-43124 MEDIUM
F5 BIG-IP Access Policy Manager 14.1.5.2-14.1.5.5 and Client 7.2.3 - Cleartext Transmission of Sensitive Information
CVSS 5.3
CVE-2023-42147 HIGH
CloudExplorer Lite 1.3.1 - Sensitive Information Exposure via Login Key Component
CVSS 7.5
CVE-2023-4918 HIGH
Keycloak 22.0.2 - Cleartext Transmission of Sensitive Information via User Registration Form
CVSS 8.8
CVE-2023-40729 HIGH
QMS Automotive <V12.39 - Info Disclosure
CVSS 7.3
CVE-2023-34998 HIGH
OAS Platform 18.00.0072 - Authentication Bypass via Network Traffic Sniffing
CVSS 8.1
CVE-2023-22870 MEDIUM
IBM Aspera Faspex < 5.0.5 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2023-25848 MEDIUM
ArcGIS Enterprise Server < 11.0 - Unauthenticated Information Disclosure via Crafted Query
CVSS 5.3
CVE-2023-34972 LOW
QNAP QTS 5.0.1-5.0.1.2424 and QuTS hero h5.1.0-h5.1.0.2423 - Cleartext Transmission of Sensitive Information
CVSS 3.5
CVE-2023-36673 HIGH
Avira Phantom VPN <2.23.1 - Info Disclosure
CVSS 7.3
CVE-2023-36672 MEDIUM
Clario VPN client <5.9.1.1662 - Info Disclosure
CVSS 5.7
CVE-2023-36671 MEDIUM
Clario VPN client <5.9.1.1662 - Info Disclosure
CVSS 6.3
CVE-2023-39086 HIGH
ASUS RT-AC66U B1 3.0.0.4.286_51665 - Info Disclosure
CVSS 7.5
CVE-2023-2754 HIGH
Cloudflare WARP < 2023.7.160.0 - Cleartext Transmission of Sensitive Information via IPv6 DNS Queries
CVSS 7.4
CVE-2023-3763 LOW
Intergard SGS 8.7.0 - Cleartext Transmission of Sensitive Information in SQL Query Handler
CVSS 3.7
CVE-2023-3761 LOW
Intergard SGS 8.7.0 - Cleartext Transmission of Sensitive Information in Password Change Handler
CVSS 3.7
CVE-2023-34142 CRITICAL
Hitachi Device Manager <8.8.5-02 - Info Disclosure
CVSS 9.0
Details
Vulnerabilities 882
Exploit Likelihood High