CWE-922
Insecure Storage of Sensitive Information
The product stores sensitive information without properly limiting read or write access by unauthorized actors.
373 vulnerabilities with CWE-922
CVE-2024-12082
MEDIUM
OpenHarmony < 4.0 - Out-of-bounds Read
CVSS 5.5
CVE-2024-8899
MEDIUM
Jeg Elementor Kit <= 2.6.9 - Authenticated Sensitive Information Exposure via Tabs View Render Function
CVSS 4.3
CVE-2024-30896
CRITICAL
InfluxDB OSS <2.7.11 - Info Disclosure
CVSS 9.1
CVE-2024-3334
MEDIUM
Digital Guardian <8.2.0 - Auth Bypass
CVSS 4.3
CVE-2024-52519
LOW
Nextcloud Server 27.0.0-27.1.11.8 and 28.0.0-28.0.10 - Insecure Storage of OAuth2 Client Secrets
CVSS 2.7
CVE-2024-3502
HIGH
lunary-ai/lunary <1.2.5 - Info Disclosure
CVSS 8.1
CVE-2024-3501
HIGH
lunary-ai/lunary <1.2.6 - Info Disclosure
CVSS 8.1
CVE-2024-10943
CRITICAL
Rockwell Automation FactoryTalk Updater 4.00.00-4.10.00 - Authentication Bypass via Shared Secrets
CVSS 9.1
CVE-2024-43427
LOW
moodle <4.1.12 and 4.4.0-4.4.2 - Sensitive Information Exposure in Site Administration Presets Export
CVSS 3.7
CVE-2024-48939
HIGH
Paxton Net2 <6.07.14023.5015 - Info Disclosure
CVSS 7.5
CVE-2024-34677
MEDIUM
System UI <SMR Nov-2024 Release 1 - Info Disclosure
CVSS 4.0
CVE-2024-10028
HIGH
Everest Backup - WordPress Cloud <2.2.13 - Info Disclosure
CVSS 7.5
CVE-2024-48353
HIGH
Yealink Meeting Server <V26.0.0.67 - Info Disclosure
CVSS 7.5
CVE-2024-48352
HIGH
Yealink Meeting Server <V26.0.0.67 - Info Disclosure
CVSS 7.5
CVE-2024-51399
MEDIUM
Altai Technologies Ltd Altai IX500 Indoor - Info Disclosure
CVSS 5.7
CVE-2024-44257
MEDIUM
macOS Ventura <13.7.1 - Info Disclosure
CVSS 5.5
CVE-2024-44216
MEDIUM
macOS Ventura <13.7.1 - Info Disclosure
CVSS 5.5
CVE-2024-44275
MEDIUM
macOS Ventura <13.7.1 - Info Disclosure
CVSS 5.5
CVE-2024-44263
MEDIUM
iPadOS < 18.1 - Unprotected User Data Exposure via Logic Issue
CVSS 5.5
CVE-2024-44222
LOW
macOS Ventura <13.7.1 - Info Disclosure
CVSS 3.3
CVE-2024-44213
MEDIUM
macOS Ventura <13.7.1 - Info Disclosure
CVSS 5.9
CVE-2024-44175
MEDIUM
macOS < 14.7.1 and < 15 - Unprotected User Data Exposure via Symlink Validation Issue
CVSS 5.5
CVE-2024-44174
MEDIUM
macOS < 15.0 - Unprotected User Data Exposure via Lock Screen
CVSS 5.5
CVE-2024-30122
MEDIUM
HCL Sametime < 12.0.2 - Insecure Storage of Sensitive Information via Missing Security Headers
CVSS 5.8
CVE-2024-10041
MEDIUM
linux-pam - Insecure Storage of Sensitive Information via Branch Predictor Training
CVSS 4.7
Details
Vulnerabilities
373