CWE-319
High likelihoodCleartext Transmission of Sensitive Information
The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
898 vulnerabilities with CWE-319
CVE-2025-15619
LOW
HCL Connections is vulnerable to broken access control
CVSS 3.5
CVE-2025-62311
MEDIUM
HCL AION is affected by a vulnerability where backend service details may be transmitted over insecure HTTP channels.
CVSS 4.3
CVE-2025-62310
MEDIUM
HCL AION is affected by a vulnerability where encryption is not enforced for certain data transmissions or operations
CVSS 5.4
CVE-2025-59852
LOW
HCL DFXAnalytics is affected by an Insufficient Transport Layer Protection vulnerability
CVSS 3.7
CVE-2025-31981
MEDIUM
HCL BigFix Service Management (SM) Discovery is vulnerable to unenforced encryption
CVSS 5.3
CVE-2025-64648
MEDIUM
IBM Concert 1.0.0-2.2.0 - Cleartext Data Transmission
CVSS 5.9
CVE-2025-13718
LOW
IBM Sterling Partner Engagement Manager 6.2.3.0-6.2.3.5/6.2.4.0-6.2.4.2 - Info Disclosure
CVSS 3.7
CVE-2025-70048
HIGH
Nexusoft NexusInterface 3.2.0-beta.2 - Info Disclosure
CVSS 7.5
CVE-2025-69969
CRITICAL
SRK Powertech Pebble Prism Ultra 2.9.2 - Command Injection
CVSS 9.6
CVE-2025-13490
MEDIUM
IBM App Connect Operator - Info Disclosure
CVSS 5.9
CVE-2025-58107
HIGH
Microsoft Exchange through 2019 - Info Disclosure
CVSS 7.5
CVE-2025-27903
MEDIUM
IBM DB2 Recovery Expert 5.5 IF002 - Info Disclosure
CVSS 5.9
CVE-2025-10174
HIGH
PanCafe Pro <3.3.2-23092025 - Info Disclosure
CVSS 8.3
CVE-2025-66604
MEDIUM
FAST/TOOLS <10.04 - Info Disclosure
CVSS 5.3
CVE-2025-64769
HIGH
AVEVA Process Optimization < 2025 - Cleartext Transmission of Sensitive Information
CVSS 7.1
CVE-2025-13454
MEDIUM
Lenovo ThinkPlus FU100/FU200/TU800/TSD303 Firmware - Cleartext Transmission of Sensitive Information
CVSS 5.5
CVE-2025-69272
HIGH
Broadcom DX NetOps Spectrum < 21.2.2 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2025-67159
HIGH
Vatilon PA4 Firmware v1.12.37-20240124 - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2025-62578
HIGH
DVP-12SE Firmware - Cleartext Transmission of Sensitive Information via Modbus/TCP
CVSS 7.5
CVE-2025-61738
LOW
Johnson Controls IQPanel2, IQHub, IQPanel2+, IQPanel 4, PowerG - Cleartext Transmission of Sensitive Information
CVE-2025-65855
MEDIUM
Netun Solutions HelpFlash IoT v18_178_221102_ASCII_PRO_1R5_50 - RCE
CVSS 6.6
CVE-2025-62330
MEDIUM
HCL DevOps Deploy 8.1.0-8.1.2.3 - Cleartext Transmission of Sensitive Information via HTTP Port
CVSS 5.9
CVE-2025-13489
MEDIUM
IBM DevOps Deploy 8.1.0.0-8.1.2.3 - Cleartext Transmission of Sensitive Information
CVSS 5.9
CVE-2025-65827
CRITICAL
meatmeet - Cleartext Transmission of Sensitive Information via HTTP
CVSS 9.1
CVE-2025-66573
HIGH
Solstice Pod API <6.2 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities
898
Exploit Likelihood
High