CWE-319

High likelihood

Cleartext Transmission of Sensitive Information

Parent: CWE-311 - Missing Encryption of Sensitive Data

The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

898 vulnerabilities with CWE-319
CVE-2025-63364 HIGH
Waveshare RS232/485 TO WIFI ETH (B) - Info Disclosure
CVSS 7.5
CVE-2025-63292 LOW
Freebox v5 < 1.7.20 & v6 < 4.7.0 - Cleartext Transmission of Sensitive Information via EAP-SIM
CVSS 3.5
CVE-2025-62765 HIGH
General Industrial Controls Lynx+ Gateway - Info Disclosure
CVSS 7.5
CVE-2025-12508 HIGH
Bizerba BRAIN2 < 3.07 - Cleartext Transmission of Sensitive Information via Active Directory Communication
CVSS 8.4
CVE-2025-64389 HIGH
Device Web Server - Info Disclosure
CVE-2025-34271 CRITICAL
Nagios Log Server < 2024R2.0.2 - Cleartext Transmission of Sensitive Credentials via Cluster Manager
CVSS 9.8
CVE-2025-61481 CRITICAL
MikroTik RouterOS <7.14.2 & SwOS <2.18 - XSS
CVSS 10.0
CVE-2025-56447 CRITICAL
TM2 Monitoring v3.04 - Auth Bypass, Info Disclosure
CVSS 9.8
CVE-2025-10641 HIGH
WorkExaminer Professional - Info Disclosure
CVSS 7.1
CVE-2025-62643 LOW
Restaurant Brands International Assistant < 2025-09-06 - Cleartext Transmission of Sensitive Information via Email
CVSS 3.4
CVE-2025-11492 CRITICAL
ConnectWise Automate < 2025.9 - Cleartext Transmission of Sensitive Information via HTTP
CVSS 9.6
CVE-2025-53139 HIGH
Windows 10/11, Server 2025 Cleartext Transmission in Windows Hello
CVSS 7.7
CVE-2025-41718 HIGH
Murrelektronik Firmware Impact67 Pro - Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2025-11640 LOW
Furbo 360 Dog Camera <036 & Furbo Mini <074 - Cleartext BLE Transmission
CVSS 3.1
CVE-2025-59448 MEDIUM
YoSmart YoLink Ecosystem <2025-10-02 - Info Disclosure
CVSS 4.7
CVE-2025-59406 MEDIUM
Flock Safety Pisco 6.21.11 - Cleartext Transmission of Sensitive Information via Hardcoded Auth0 Client Secret
CVSS 6.2
CVE-2025-36274 HIGH
IBM Aspera HTTP Gateway 2.0.0-2.3.1 - Unauthenticated Cleartext Transmission of Sensitive Information
CVSS 7.5
CVE-2025-10540 MEDIUM
iMonitor EAM 9.6394 - Info Disclosure
CVSS 6.5
CVE-2025-10776 LOW
LionCoders SalePro POS <5.5.0 - Info Disclosure
CVSS 3.7
CVE-2025-54818 HIGH
Cognex In-Sight Explorer & Camera Firmware - Info Disclosure
CVSS 8.0
CVE-2025-47698 HIGH
Cognex In-Sight 2000/7000/8000/9000 & Explorer 5.x-6.5.1 - Unauthenticated Credential Exposure
CVE-2025-7743 CRITICAL
Dolusoft Omaspot <12.09.2025 - Info Disclosure
CVSS 9.6
CVE-2025-50110 HIGH
AVTECH EagleEyes Lite <2.0.0 - Info Disclosure
CVSS 8.8
CVE-2025-55976 HIGH
Intelbras IWR 3000N <1.9.8 - Info Disclosure
CVSS 8.4
CVE-2025-41708 HIGH
Unsecured Web Interface - Info Disclosure
CVSS 7.4
Details
Vulnerabilities 898
Exploit Likelihood High