CWE-922

Insecure Storage of Sensitive Information

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product stores sensitive information without properly limiting read or write access by unauthorized actors.

368 vulnerabilities with CWE-922
CVE-2023-23522 MEDIUM
macOS Ventura <13.2.1 - Info Disclosure
CVSS 5.5
CVE-2023-22469 MEDIUM
Deck <1.8.2 - Info Disclosure
CVSS 5.8
CVE-2022-20939 MEDIUM
Cisco Smart Software Manager On-Prem - Privilege Escalation
CVSS 4.3
CVE-2022-30361 MEDIUM
OvalEdge 5.2.8.0 - Info Disclosure
CVSS 5.3
CVE-2022-30359 MEDIUM
Ovaledge < 5.2.8 - XSS
CVSS 4.3
CVE-2022-44581 MEDIUM
WPMU DEV Defender Security <3.3.2 - Info Disclosure
CVSS 5.0
CVE-2022-46484 HIGH
Data Illusion Survey Software Solutions NGSurvey - Information Disclosure
CVSS 7.5
CVE-2022-44619 HIGH
Intel(R) DCM <5.1 - Privilege Escalation
CVSS 8.2
CVE-2022-43475 MEDIUM
Intel(R) DCM <5.1 - Privilege Escalation
CVSS 6.0
CVE-2022-43877 MEDIUM
IBM UrbanCode Deploy <7.3.0.1 - Info Disclosure
CVSS 5.1
CVE-2022-39043 LOW
Juiker - Info Disclosure
CVSS 2.4
CVE-2022-38090 MEDIUM
Intel(R) Processors - Info Disclosure
CVSS 6.0
CVE-2022-2815 MEDIUM
GitHub publify/publify <9.2.10 - Info Disclosure
CVSS 6.5
CVE-2022-40959 MEDIUM
Firefox ESR < 102.3, Thunderbird < 102.3, Firefox < 105 - CSRF
CVSS 6.5
CVE-2022-32833 MEDIUM
iOS <16 - Info Disclosure
CVSS 5.3
CVE-2022-34354 MEDIUM
IBM Sterling Partner Engagement Manager 2.0 - Info Disclosure
CVSS 4.0
CVE-2022-34312 MEDIUM
IBM Cics TX - Information Disclosure
CVSS 4.0
CVE-2022-33973 LOW
Intel(R) WAPI Security <22.2150.0.1 - Info Disclosure
CVSS 3.3
CVE-2022-41876 HIGH
ezplatform-graphql <2.3.12, <1.0.13 - Info Disclosure
CVSS 7.5
CVE-2022-32867 LOW
iOS <16 - Info Disclosure
CVSS 2.4
CVE-2022-28170 MEDIUM
Brocade Fabric OS Web Application <9.1.0-7.4.2j - Info Disclosure
CVSS 6.5
CVE-2022-41320 MEDIUM
Veritas System Recovery <21 - Privilege Escalation
CVSS 6.5
CVE-2022-37835 HIGH
Torguard VPN 4.8 - Info Disclosure
CVSS 7.5
CVE-2022-35513 HIGH
Blink1control2 < 2.2.7 - Broken Cryptographic Algorithm
CVSS 7.5
CVE-2022-1021 MEDIUM
Chatwoot < 2.6.0 - XSS
CVSS 5.4
Details
Vulnerabilities 368