CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

884 vulnerabilities with CWE-319
CVE-2019-19316 HIGH
Terraform <0.12.17 - Info Disclosure
CVSS 7.5
CVE-2019-12503 CRITICAL
Inateck BCST-60 Firmware - Keystroke Injection via Unencrypted Communication
CVSS 9.8
CVE-2019-12388 HIGH
Anviz Access Control - Info Disclosure
CVSS 7.5
CVE-2019-19463 MEDIUM
Anhui Huami Mi Fit <4.0.11 - Info Disclosure
CVSS 5.3
CVE-2019-16545 MEDIUM
Jenkins QMetry for JIRA - Test Management Plugin - Info Disclosure
CVSS 6.5
CVE-2019-3640 MEDIUM
McAfee Data Loss Prevention 11.0.0-11.3.x - Cleartext Transmission of LDAP Credentials via ePO Extension
CVSS 4.8
CVE-2019-18852 CRITICAL
D-Link DIR-600 B1, DIR-615 J1, DIR-645 A1, DIR-815 A1, DIR-823 A1, DIR-842 C1, DIR-890L A1 - Hardcoded Credentials
CVSS 9.8
CVE-2019-18800 HIGH
Viber < 11.7.0.5 - Cleartext Transmission of Sensitive Information via TCP Port 4244
CVSS 8.8
CVE-2019-6846 MEDIUM
Modicon M580, M340, BMxCRA, and 140CRA Firmware - Cleartext Transmission of Sensitive Information via FTP
CVSS 6.5
CVE-2019-6845 HIGH
Modicon M580, M340, Premium, Quantum - Cleartext Transmission of Sensitive Information via Modbus TCP
CVSS 7.5
CVE-2019-18201 HIGH
Fujitsu LX390 Firmware - Cleartext Transmission of Sensitive Information via 2.4 GHz Communication
CVSS 7.5
CVE-2019-18199 MEDIUM
Fujitsu LX390 Firmware - Cleartext Transmission of Sensitive Information via 2.4 GHz Communication
CVSS 6.6
CVE-2019-12967 MEDIUM
Moolticute < 0.42.1 - Cleartext Transmission of Sensitive Information
CVSS 6.5
CVE-2019-17393 CRITICAL
Tomedo Server 1.7.3 - Cleartext Transmission of Sensitive Information via HTTP
CVSS 9.8
CVE-2019-15626 HIGH
Deep Security Manager 10.0, 11.0, 12.0 - Cleartext Transmission of Sensitive LDAP Communication
CVSS 7.5
CVE-2019-17356 MEDIUM
Infinite Design 3.4.12 - Cleartext Transmission of Sensitive Information via TCP
CVSS 6.5
CVE-2019-9532 HIGH
Cobham EXPLORER 710 <1.07 - Info Disclosure
CVSS 7.8
CVE-2019-0069 MEDIUM
Juniper Junos - Cleartext Transmission of Sensitive Information via Console Management Port Authentication
CVSS 5.9
CVE-2019-14808 MEDIUM
RENPHO 3.0.0 - Cleartext Transmission of Sensitive Information
CVSS 6.8
CVE-2019-17218 CRITICAL
V-Zug Combi-Steam MSLQ Firmware < ethernet_r07 - Cleartext Transmission of Sensitive Information via HTTP
CVSS 9.1
CVE-2019-14959 MEDIUM
JetBrains Toolbox < 1.15.5605 - Cleartext Transmission of Sensitive Information via Internal URL Resolution
CVSS 5.9
CVE-2019-0231 HIGH
Apache MINA < 2.0.21 and 2.1.0 - Cleartext Transmission of Sensitive Information via SSL/TLS Connection Handling
CVSS 7.5
CVE-2019-14954 MEDIUM
IntelliJ IDEA < 2019.2 - Cleartext Transmission of Sensitive Information via PlantUML Artifact Download
CVSS 5.9
CVE-2019-10435 HIGH
Jenkins SourceGear Vault Plugin < 1.1.1 - Cleartext Transmission of Sensitive Credentials
CVSS 7.5
CVE-2019-10434 HIGH
Jenkins LDAP Email Plugin < 0.8 - Cleartext Transmission of Sensitive Credentials
CVSS 7.5
Details
Vulnerabilities 884
Exploit Likelihood High