CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

884 vulnerabilities with CWE-319
CVE-2020-14157 HIGH
ABUS Secvest FUBE50001 Firmware - Cleartext Transmission of Sensitive Information via Wireless Communication
CVSS 8.1
CVE-2020-14093 MEDIUM
mutt < 1.14.3 - Cleartext Transmission of Sensitive Information via IMAP PREAUTH Response
CVSS 5.9
CVE-2020-11614 HIGH
Mids' Reborn Hero Designer 2.6.0.7 - Cleartext Transmission of Sensitive Information via HTTP Update Manifest
CVSS 8.1
CVE-2020-1343 MEDIUM
Visual Studio Live Share - Cleartext Transmission of Sensitive Information via Token Exposure
CVSS 5.9
CVE-2020-13787 HIGH
D-Link DIR-865L Firmware 1.20B01 Beta - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2020-2013 HIGH
Palo Alto Networks PAN-OS 7.1.0-7.1.25 - Authenticated Cleartext Transmission of Session Cookie
CVSS 8.3
CVE-2020-4092 MEDIUM
HCL Nomad - Cleartext Transmission of Sensitive Information
CVSS 5.3
CVE-2020-5893 LOW
BIG-IP Edge Client <7.1.9 - Info Disclosure
CVSS 3.7
CVE-2020-5886 CRITICAL
F5 BIG-IP 12.1.0-15.1.0.1 Cleartext Transmission of Sensitive Cryptographic Objects via Connection Mirroring
CVSS 9.1
CVE-2020-5885 CRITICAL
F5 BIG-IP 12.1.0-15.1.0.1 Cleartext Transmission of Sensitive Cryptographic Objects
CVSS 9.1
CVE-2020-5879 HIGH
BIG-IP ASM <11.6.5.1 - Info Disclosure
CVSS 7.5
CVE-2020-5876 HIGH
BIG-IP <15.0.1.3,14.1.2.3,13.1.3.3,12.1.5.1,11.6.5.1 - Info Disclosure
CVSS 8.1
CVE-2020-5867 HIGH
NGINX Controller Agent <3.3.0 - Info Disclosure
CVSS 8.1
CVE-2020-5865 MEDIUM
NGINX Controller <3.3.0 - Info Disclosure
CVSS 4.8
CVE-2020-7488 HIGH
EcoStruxure Machine Expert - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2020-11685 HIGH
JetBrains GoLand < 2019.3.2 - Cleartext Transmission of Sensitive Information via Plugin Repository
CVSS 7.5
CVE-2020-11539 HIGH
Tata Sonata Smart SF Rush 1.12 - Unauthenticated Cleartext Transmission of Sensitive Information
CVSS 8.1
CVE-2020-7483 HIGH
Schneider Electric TriStation 1131 < 4.12.0 - Cleartext Transmission of Sensitive Information via Password Feature
CVSS 7.5
CVE-2020-6195 CRITICAL
SAP Business Objects <4.2 - Info Disclosure
CVSS 9.8
CVE-2020-11557 HIGH
Castle Rock SNMPc Online 12.10.10-2020-01-28 - Cleartext Transmission of Sensitive Information in Cookie
CVSS 7.5
CVE-2020-11542 CRITICAL
3xLOGIC Infinias eIDC32 2.213 with Web 1.107 - Authentication Bypass via CMD.HTM Endpoint
CVSS 9.8
CVE-2020-5860 HIGH
F5 BIG-IP and BIG-IQ - Cleartext Transmission of Sensitive Information in HA Network Failover Traffic
CVSS 8.1
CVE-2020-6997 HIGH
Moxa EDS-G516E and EDS-510E Firmware < 5.2 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2020-7003 HIGH
Moxa ioLogik 2500 Series Firmware < 3.0 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2020-0884 LOW
Microsoft Visual Studio 2017 15.1-15.7 and 2019 16.0-16.2 Cleartext Transmission of Sensitive Information
CVSS 3.7
Details
Vulnerabilities 884
Exploit Likelihood High