CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

898 vulnerabilities with CWE-319
CVE-2023-43124 MEDIUM
F5 BIG-IP Access Policy Manager 14.1.5.2-14.1.5.5 and Client 7.2.3 - Cleartext Transmission of Sensitive Information
CVSS 5.3
CVE-2023-42147 HIGH
CloudExplorer Lite 1.3.1 - Sensitive Information Exposure via Login Key Component
CVSS 7.5
CVE-2023-4918 HIGH
Keycloak 22.0.2 - Cleartext Transmission of Sensitive Information via User Registration Form
CVSS 8.8
CVE-2023-40729 HIGH
QMS Automotive <V12.39 - Info Disclosure
CVSS 7.3
CVE-2023-34998 HIGH
OAS Platform 18.00.0072 - Authentication Bypass via Network Traffic Sniffing
CVSS 8.1
CVE-2023-22870 MEDIUM
IBM Aspera Faspex < 5.0.5 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2023-25848 MEDIUM
ArcGIS Enterprise Server < 11.0 - Unauthenticated Information Disclosure via Crafted Query
CVSS 5.3
CVE-2023-34972 LOW
QNAP QTS 5.0.1-5.0.1.2424 and QuTS hero h5.1.0-h5.1.0.2423 - Cleartext Transmission of Sensitive Information
CVSS 3.5
CVE-2023-36673 HIGH
Avira Phantom VPN <2.23.1 - Info Disclosure
CVSS 7.3
CVE-2023-36672 MEDIUM
Clario VPN client <5.9.1.1662 - Info Disclosure
CVSS 5.7
CVE-2023-36671 MEDIUM
Clario VPN client <5.9.1.1662 - Info Disclosure
CVSS 6.3
CVE-2023-39086 HIGH
ASUS RT-AC66U B1 3.0.0.4.286_51665 - Info Disclosure
CVSS 7.5
CVE-2023-2754 HIGH
Cloudflare WARP < 2023.7.160.0 - Cleartext Transmission of Sensitive Information via IPv6 DNS Queries
CVSS 7.4
CVE-2023-3763 LOW
Intergard SGS 8.7.0 - Cleartext Transmission of Sensitive Information in SQL Query Handler
CVSS 3.7
CVE-2023-3761 LOW
Intergard SGS 8.7.0 - Cleartext Transmission of Sensitive Information in Password Change Handler
CVSS 3.7
CVE-2023-34142 CRITICAL
Hitachi Device Manager <8.8.5-02 - Info Disclosure
CVSS 9.0
CVE-2023-30565 LOW
BD Guardrails CQI Reporter < 10.17 - Cleartext Transmission of Sensitive Infusion Data
CVSS 3.5
CVE-2023-35833 MEDIUM
YSoft SAFEQ 6 Server < 6.0.82 - Cleartext Transmission of Sensitive Information via LDAP Configuration Downgrade
CVSS 6.5
CVE-2023-31823 HIGH
Marui Co Marui Official <13.6.1 - Info Disclosure
CVSS 7.5
CVE-2023-3272 HIGH
SICK ICR890-4 Firmware < 2.5.0 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2023-21220 HIGH
Android - Cleartext Transmission of Sensitive Information via Cellular Network
CVSS 7.5
CVE-2023-21219 HIGH
Android - Cleartext Transmission of Sensitive Information via Cellular Network
CVSS 7.5
CVE-2023-31410 CRITICAL
SICK EventCam App - Info Disclosure
CVSS 9.8
CVE-2023-23841 HIGH
SolarWinds Serv-U - Info Disclosure
CVSS 7.5
CVE-2023-31195 MEDIUM
ASUS Router RT-AX3000 Firmware <3.0.0.4.388.23403 - Info Disclosure
CVSS 5.3
Details
Vulnerabilities 898
Exploit Likelihood High