CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

899 vulnerabilities with CWE-319
CVE-2020-27185 HIGH
Moxa NPort IA5000A Series < 1.4/1.7 - Cleartext Transmission of Sensitive Information via Moxa Service
CVSS 7.5
CVE-2020-27184 MEDIUM
Moxa NPort IA5000A Series < 1.4/1.7 - Cleartext Transmission of Sensitive Information via Telnet
CVSS 5.9
CVE-2020-26197 HIGH
Dell PowerScale OneFS 8.1.0-9.1.0 - Cleartext Transmission of Sensitive Information via LDAP Provider
CVSS 7.5
CVE-2020-7308 MEDIUM
McAfee Endpoint Security < 10.7.0 - Cleartext Transmission of Sensitive Information via DNS
CVSS 4.8
CVE-2020-35456 MEDIUM
Taidii Diibear 2.4.0 - Sensitive Information Exposure via Logcat
CVSS 5.5
CVE-2020-8356 MEDIUM
Lenovo XClarity Orchestrator < 1.2.2 - Cleartext Transmission of Sensitive Information in Log Files
CVSS 4.9
CVE-2020-4695 HIGH
IBM API Connect 10.0.0.0-10.0.0.9 - Cleartext Transmission of Sensitive Information during Database Replication
CVSS 7.5
CVE-2020-25605 MEDIUM
Agora Video SDK < 3.1 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-8355 MEDIUM
Lenovo XClarity Administrator <3.1.0 - Info Disclosure
CVSS 4.9
CVE-2020-29662 MEDIUM
Harbor <2.0.5, <2.1.2 - Info Disclosure
CVSS 5.3
CVE-2020-29005 HIGH
MediaWiki < 1.35 - Cleartext Transmission of Sensitive Information in Push Extension API
CVSS 7.5
CVE-2020-25169 HIGH
Reolink P2P Firmware - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2020-4969 MEDIUM
IBM Security Identity Governance and Intelligence 5.2.6 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-4597 MEDIUM
IBM Security Guardium Insights 2.0.2 - Cleartext Transmission of Sensitive Information via Insecure Cookie Handling
CVSS 4.3
CVE-2020-4893 MEDIUM
IBM Emptoris Strategic Supply Management 10.1.0-10.1.0.38 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2020-4899 CRITICAL
IBM API Connect 5.0.0.0-5.0.8.10 - Cleartext Transmission of Sensitive Information
CVSS 9.1
CVE-2020-11718 HIGH
bilanc < 014_31.01.2020 - Cleartext Transmission of Sensitive Information via Software Update Downloads
CVSS 7.4
CVE-2020-35584 MEDIUM
Solstice Pod < 3.0.3 - Cleartext Transmission of Sensitive Information via Browser Look-in Feature
CVSS 5.9
CVE-2020-25190 HIGH
MOXA NPort IAW5000A-I/O Firmware < 2.1 - Cleartext Transmission of Sensitive Credentials
CVSS 7.5
CVE-2020-13528 MEDIUM
Lantronix XPort EDGE <4.2.0.0R7 - Info Disclosure
CVSS 5.3
CVE-2020-14248 MEDIUM
BigFix Platform 9.0.0-10.0.2 - Cleartext Transmission of Sensitive Information via Session Cookie
CVSS 5.3
CVE-2020-27586 MEDIUM
Quick Heal Total Security <19.0 - Info Disclosure
CVSS 5.9
CVE-2020-29380 MEDIUM
V-SOL V1600D <2.03.69, V1600G1/V2 <2.0.7/1.9.7 - Info Disclosure
CVSS 5.9
CVE-2020-29055 MEDIUM
Cdatatec 72408a Firmware - Cleartext Transmission
CVSS 5.9
CVE-2020-25988 MEDIUM
Genexis Platinum 4410 V2.1 (P4410-V2-1.34H) - Cleartext Sensitive Info via UPnP X_GetAccess
CVSS 6.5
Details
Vulnerabilities 899
Exploit Likelihood High