CWE-922

Insecure Storage of Sensitive Information

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product stores sensitive information without properly limiting read or write access by unauthorized actors.

368 vulnerabilities with CWE-922
CVE-2025-25732 MEDIUM
Kapsch TrafficCom RIS-9160 & RIS-9260 <4.6.0.1211.28 - Privilege Es...
CVSS 6.8
CVE-2025-46660 MEDIUM
4C Strategies Exonaut <21.6 - Info Disclosure
CVSS 5.3
CVE-2025-37110 MEDIUM
HPE Telco NFVO - Info Disclosure
CVSS 6.0
CVE-2025-28171 MEDIUM
Grandstream UCM6510 <1.0.20.52 - Info Disclosure
CVSS 6.5
CVE-2025-28244 HIGH
Alteryx Server <2023.1.1.460 - Info Disclosure
CVSS 8.8
CVE-2025-21003 MEDIUM
Emergency SOS <SMR Jul-2025 Release 1 - Info Disclosure
CVSS 4.0
CVE-2025-42979 MEDIUM
GuiXT - Info Disclosure
CVSS 5.6
CVE-2025-37100 HIGH
HPE Aruba Networking Private 5G Core - Info Disclosure
CVSS 7.7
CVE-2025-48929 MEDIUM
TeleMessage - Info Disclosure
CVSS 4.0
CVE-2025-45242 HIGH
Rhymix v2.1.22 - File Deletion
CVSS 7.7
CVE-2025-46627 HIGH
Tenda RX2 Pro 16.03.30.14 - Auth Bypass
CVSS 8.2
CVE-2025-2440 MEDIUM
Unknown - Info Disclosure
CVSS 4.2
CVE-2025-29809 HIGH
Windows Kerberos - Info Disclosure
CVSS 7.1
CVE-2025-20945 MEDIUM
Galaxy Watch <SMR Apr-2025 Release 1 - Info Disclosure
CVSS 4.0
CVE-2025-2489 MEDIUM
NTFS Tools <3.5.1 - Info Disclosure
CVE-2025-2241 HIGH
Openshift Hive - Privilege Escalation
CVSS 8.2
CVE-2025-2157 LOW
Foreman/Red Hat Satellite - Info Disclosure
CVSS 3.3
CVE-2025-20912 MEDIUM
DiagMonAgent <SMR Mar-2025 Release 1 - Info Disclosure
CVSS 6.2
CVE-2025-21098 MEDIUM
Openatom Openharmony < 5.0.2 - Information Disclosure
CVSS 5.5
CVE-2025-22492 MEDIUM
Foreseer Reporting Software <1.5.100 - Info Disclosure
CVSS 6.3
CVE-2025-20886 MEDIUM
softsim trustlet <SMR Jan-2025 Release 1 - Info Disclosure
CVSS 4.1
CVE-2025-24117 MEDIUM
Apple Ipados < 17.7.4 - Denial of Service
CVSS 5.5
CVE-2025-24101 MEDIUM
macOS Sequoia <15.3 - Info Disclosure
CVSS 5.5
CVE-2025-21299 HIGH
Windows Kerberos - Privilege Escalation
CVSS 7.1
CVE-2025-22984 HIGH
iceCMS <2.2.0 - Info Disclosure
CVSS 7.5
Details
Vulnerabilities 368