CWE-922

Insecure Storage of Sensitive Information

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product stores sensitive information without properly limiting read or write access by unauthorized actors.

368 vulnerabilities with CWE-922
CVE-2024-29965 MEDIUM
Brocade SANnav <2.3.1-2.3.0a - Info Disclosure
CVSS 6.8
CVE-2024-21117 MEDIUM
Oracle Outside IN Technology - Command Injection
CVSS 5.3
CVE-2024-23561 MEDIUM
Hcltechsw Hcl Devops Deploy < 8.0.1 - Information Disclosure
CVSS 4.3
CVE-2024-30917 MEDIUM
Eprosima Fast Dds < 2.14.0 - Denial of Service
CVSS 5.5
CVE-2024-31278 MEDIUM
Leap13 Premium Addons For Elementor < 4.10.22 - Information Disclosure
CVSS 4.3
CVE-2024-2974 MEDIUM
Essential Addons for Elementor - Info Disclosure
CVSS 5.3
CVE-2024-27232 MEDIUM
asn1_common.c - Info Disclosure
CVSS 5.5
CVE-2024-20050 MEDIUM
flashc - Info Disclosure
CVSS 4.4
CVE-2024-25655 MEDIUM
AVSystem UMP 23.07.0.16567~LTS - Info Disclosure
CVSS 6.5
CVE-2024-28069 HIGH
Mitel Micontact Center Business < 10.0.0.4 - Information Disclosure
CVSS 7.5
CVE-2024-23290 MEDIUM
Apple Ipados < 17.4 - Denial of Service
CVSS 5.5
CVE-2024-23241 MEDIUM
Apple Ipad OS < 17.4 - Denial of Service
CVSS 5.5
CVE-2024-23232 LOW
macOS Sonoma <14.4 - Info Disclosure
CVSS 3.3
CVE-2024-23205 MEDIUM
Apple Ipad OS < 17.4 - Denial of Service
CVSS 5.5
CVE-2024-1936 HIGH
Thunderbird - Info Disclosure
CVSS 7.5
CVE-2024-21826 MEDIUM
Openatom Openharmony < 3.2.4 - Information Disclosure
CVSS 4.3
CVE-2024-26559 MEDIUM
uverif <2.0 - Info Disclosure
CVSS 5.3
CVE-2024-22371 LOW
Apache Camel <4.4.0 - Info Disclosure
CVSS 2.9
CVE-2024-0037 LOW
Google Android - Missing Authorization
CVSS 3.3
CVE-2024-25940 MEDIUM
bhyveload - Path Traversal
CVSS 6.3
CVE-2024-25360 MEDIUM
Motorola CX2L Router <1.0.1 - Info Disclosure
CVSS 5.3
CVE-2024-25728 HIGH
ExpressVPN <12.73.0 - Info Disclosure
CVSS 7.5
CVE-2024-22773 HIGH
Intelbras Action RF <1.2.2 & Action RG <2.1.7 - Auth Bypass
CVSS 8.1
CVE-2024-22193 LOW
vantage6 - Info Disclosure
CVSS 3.5
CVE-2024-23217 LOW
Apple Ipados < 17.3 - Denial of Service
CVSS 3.3
Details
Vulnerabilities 368