CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

898 vulnerabilities with CWE-319
CVE-2022-30115 MEDIUM
curl 7.82.0-7.83.0 - Cleartext Transmission of Sensitive Information via HSTS Bypass
CVSS 4.3
CVE-2022-29733 MEDIUM
Delta Controls enteliTOUCH 3.40.3935 3.40.3706 3.33.4005 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2022-26077 HIGH
Open Automation Software OAS Platform <16.00.0112 - Info Disclosure
CVSS 7.5
CVE-2022-21951 MEDIUM
SUSE Rancher <2.5.14, <2.6.5 - Info Disclosure
CVSS 6.8
CVE-2022-29874 HIGH
Siemens 7kg8500-0aa00-0aa0 Firmware < 3.00 - Cleartext Transmission
CVSS 8.8
CVE-2022-30994 HIGH
Acronis Cyber Protect <15 - Info Disclosure
CVSS 7.5
CVE-2022-30993 HIGH
Acronis Cyber Protect <15 - Info Disclosure
CVSS 7.5
CVE-2022-0005 LOW
Intel Celeron and Core i3 Firmware - Sensitive Information Disclosure via JTAG Interface
CVSS 2.4
CVE-2022-29945 MEDIUM
DJI Drone Firmware - Unencrypted Location Data Transmission via AeroScope Protocol
CVSS 4.0
CVE-2022-24978 HIGH
ManageEngine ADAudit Plus < 7055 - Authenticated Privilege Escalation via Cleartext Password Exposure
CVSS 8.8
CVE-2022-0988 HIGH
Delta Electronics DIAEnergie <= 1.7.5 - Cleartext Transmission of Sensitive Information
CVSS 7.1
CVE-2022-21798 HIGH
GE CIMPLICITY - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2022-25180 MEDIUM
Jenkins Pipeline < 2648.va9433432b33c - Cleartext Transmission of Sensitive Information via Replayed Builds
CVSS 4.3
CVE-2022-0162 HIGH
TP-Link TL-WR841N V11 3.16.9 Build 160325 Rel.62500n - Info Disclosure
CVSS 8.4
CVE-2022-23105 MEDIUM
Jenkins Active Directory Plugin < 2.25 - Cleartext Transmission of Sensitive Information
CVSS 6.5
CVE-2021-39081 MEDIUM
IBM Cognos Analytics Mobile for Android 1.1.14 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2021-29892 MEDIUM
IBM Cognos Controller 11.0.0 and 11.0.1 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2021-39090 MEDIUM
IBM Cloud Pak for Security 1.10.0.0-1.10.6.0 - Cleartext Transmission of Sensitive Information via Missing HSTS
CVSS 5.9
CVE-2021-4258 LOW
whohas < 2021-11-01 - Cleartext Transmission of Sensitive Information in Package Information Handler
CVSS 3.7
CVE-2021-35246 MEDIUM
SolarWinds Engineer's Toolset - Cleartext Transmission
CVSS 5.3
CVE-2021-38828 MEDIUM
Xiongmai Camera XM-JPR2-LX < 4.02.r12.a6420987.10002.147502.00000 - Cleartext Transmission of Sensitive Information
CVSS 5.3
CVE-2021-39077 MEDIUM
IBM Security Guardium 10.5-11.4 - Cleartext Transmission of Sensitive Information
CVSS 4.4
CVE-2021-45447 HIGH
Hitachi Vantara Pentaho Business Analytics Server < 8.3.0.25, 9.2.0.2 - Cleartext Database Password Transmission
CVSS 7.7
CVE-2021-42948 LOW
HotelDruid Hotel Management Software <3.0.3 - Info Disclosure
CVSS 3.7
CVE-2021-3590 HIGH
Foreman >= 1.6.0 - Cleartext Transmission of Sensitive Information via Azure Compute Profile Password
CVSS 8.8
Details
Vulnerabilities 898
Exploit Likelihood High