CWE-922
Insecure Storage of Sensitive Information
The product stores sensitive information without properly limiting read or write access by unauthorized actors.
373 vulnerabilities with CWE-922
CVE-2024-20462
MEDIUM
Cisco ATA 190 Series - Info Disclosure
CVSS 5.5
CVE-2024-48783
HIGH
Ruijie NBR3000D-E - Info Disclosure
CVSS 7.5
CVE-2024-21258
MEDIUM
Oracle E-Business Suite <12.2.15 - Info Disclosure
CVSS 5.3
CVE-2024-21211
LOW
Oracle Java SE <23 - Compiler Vuln
CVSS 3.7
CVE-2024-48770
HIGH
Plug n Play Camera com.wisdomcity.zwave <1.1.0 - Info Disclosure
CVSS 8.2
CVE-2024-42018
HIGH
Atos Eviden SMC xScale <1.6.6 - Info Disclosure
CVSS 7.7
CVE-2024-30132
LOW
HCL Nomad Server on Domino < 1.0.13 - Sensitive Information Exposure via Missing HTTP Security Headers
CVSS 3.7
CVE-2024-28808
LOW
Infinera hiT 7300 <5.60.50 - Info Disclosure
CVSS 2.7
CVE-2024-46635
MEDIUM
INROAD <v20240206 - Info Disclosure
CVSS 5.9
CVE-2024-47122
MEDIUM
goTenna Pro < 1.6.1 and < 2.0.3 - Insecure Storage of Sensitive Encryption Keys
CVSS 4.3
CVE-2024-45374
MEDIUM
goTenna < 2.0.7 - Weak Password Requirements for Encryption Key Broadcast
CVSS 5.3
CVE-2024-43694
MEDIUM
goTenna Pro ATAK Plugin - Info Disclosure
CVSS 4.3
CVE-2024-47197
HIGH
Maven Archetype Plugin <3.3.0 - Info Disclosure
CVSS 7.5
CVE-2024-39339
HIGH
Smartplay headunits - Info Disclosure
CVSS 7.5
CVE-2024-37728
HIGH
OfficeWeb365 <8.6.1.0 - Info Disclosure
CVSS 7.5
CVE-2024-39775
MEDIUM
OpenHarmony < 4.1 - Out-of-bounds Read
CVSS 6.5
CVE-2024-39612
MEDIUM
OpenHarmony <= 4.0.0 - Out-of-bounds Read
CVSS 5.5
CVE-2024-38382
MEDIUM
OpenHarmony <4.0.0 - Info Disclosure
CVSS 5.5
CVE-2024-5288
MEDIUM
wolfssl < 5.7.2 - ECDSA Private Key Disclosure via Rowhammer Fault Injection
CVSS 5.1
CVE-2024-42677
MEDIUM
Huizhi Enterprise Resource Management <1.0 - Info Disclosure
CVSS 5.5
CVE-2024-7569
CRITICAL
Ivanti Neurons for ITSM 2023.4 and earlier - Unauthenticated Information Disclosure via Debug OIDC Client Secret
CVSS 9.6
CVE-2024-40832
LOW
macOS Sonoma <14.6 - Info Disclosure
CVSS 3.3
CVE-2024-40813
MEDIUM
watchOS 10.6-iOS 17.6-iPadOS 17.6 - Info Disclosure
CVSS 4.6
CVE-2024-6916
MEDIUM
Zowe CLI - Insecure Storage of Sensitive Information via --show-inputs-only Flag
CVSS 5.9
CVE-2024-29120
MEDIUM
Streampark <2.1.4 - Info Disclosure
CVSS 5.9
Details
Vulnerabilities
373