CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

882 vulnerabilities with CWE-319
CVE-2020-9420 MEDIUM
Arcadyan VRV9506JAC23 Firmware - Cleartext Transmission of Sensitive Information via Web Administrative Dashboard Login
CVSS 6.5
CVE-2020-4970 MEDIUM
IBM Security Identity Governance and Intelligence 5.2.4-5.2.6 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-25178 HIGH
Schneider-electric Easergy T300 Firmware - Cleartext Transmission
CVSS 7.5
CVE-2020-4152 MEDIUM
IBM QRadar Network Security 5.4.0-5.4.0.14 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-20128 HIGH
LaraCMS v1.0.1 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2020-36423 HIGH
Arm Mbed TLS < 2.23.0 - Cleartext Transmission of Sensitive Information via Lucky 13 Countermeasure Bypass
CVSS 7.5
CVE-2020-4980 MEDIUM
IBM QRadar SIEM 7.3-7.4 - Cleartext Transmission of Sensitive Information
CVSS 6.5
CVE-2020-12730 MEDIUM
MagicMotion Flamingo 2 - Info Disclosure
CVSS 5.3
CVE-2020-27185 HIGH
Moxa NPort IA5000A Series < 1.4/1.7 - Cleartext Transmission of Sensitive Information via Moxa Service
CVSS 7.5
CVE-2020-27184 MEDIUM
Moxa NPort IA5000A Series < 1.4/1.7 - Cleartext Transmission of Sensitive Information via Telnet
CVSS 5.9
CVE-2020-26197 HIGH
Dell PowerScale OneFS 8.1.0-9.1.0 - Cleartext Transmission of Sensitive Information via LDAP Provider
CVSS 7.5
CVE-2020-7308 MEDIUM
McAfee Endpoint Security < 10.7.0 - Cleartext Transmission of Sensitive Information via DNS
CVSS 4.8
CVE-2020-35456 MEDIUM
Taidii Diibear 2.4.0 - Sensitive Information Exposure via Logcat
CVSS 5.5
CVE-2020-8356 MEDIUM
Lenovo XClarity Orchestrator < 1.2.2 - Cleartext Transmission of Sensitive Information in Log Files
CVSS 4.9
CVE-2020-4695 HIGH
IBM API Connect 10.0.0.0-10.0.0.9 - Cleartext Transmission of Sensitive Information during Database Replication
CVSS 7.5
CVE-2020-25605 MEDIUM
Agora Video SDK < 3.1 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-8355 MEDIUM
Lenovo XClarity Administrator <3.1.0 - Info Disclosure
CVSS 4.9
CVE-2020-29662 MEDIUM
Harbor <2.0.5, <2.1.2 - Info Disclosure
CVSS 5.3
CVE-2020-29005 HIGH
MediaWiki < 1.35 - Cleartext Transmission of Sensitive Information in Push Extension API
CVSS 7.5
CVE-2020-25169 HIGH
Reolink P2P Firmware - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2020-4969 MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-4597 MEDIUM
IBM Security Guardium Insights 2.0.2 - Cleartext Transmission of Sensitive Information via Insecure Cookie Handling
CVSS 4.3
CVE-2020-4893 MEDIUM
IBM Emptoris Strategic Supply Management 10.1.0-10.1.0.38 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-4899 CRITICAL
IBM API Connect 5.0.0.0-5.0.8.10 - Cleartext Transmission of Sensitive Information
CVSS 9.1
CVE-2020-11718 HIGH
bilanc < 014_31.01.2020 - Cleartext Transmission of Sensitive Information via Software Update Downloads
CVSS 7.4
Details
Vulnerabilities 882
Exploit Likelihood High