CWE-922

Insecure Storage of Sensitive Information

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product stores sensitive information without properly limiting read or write access by unauthorized actors.

368 vulnerabilities with CWE-922
CVE-2023-32191 CRITICAL
RKE - Privilege Escalation
CVSS 9.9
CVE-2023-6748 MEDIUM
Custom Field Template <2.6.1 - Info Disclosure
CVSS 4.3
CVE-2023-6962 MEDIUM
WP Meta SEO <4.5.12 - Info Disclosure
CVSS 5.3
CVE-2023-52345 MEDIUM
Google Android - Information Disclosure
CVSS 6.0
CVE-2023-42913 HIGH
macOS Sonoma <14.2 - Info Disclosure
CVSS 8.8
CVE-2023-6565 MEDIUM
InfiniteWP Client <1.12.3 - Info Disclosure
CVSS 5.9
CVE-2023-45859 HIGH
Hazelcast <5.3.2 - Privilege Escalation
CVSS 7.6
CVE-2023-37540 LOW
Sametime Connect - Info Disclosure
CVSS 3.9
CVE-2023-42878 MEDIUM
Apple Ipad OS < 17.1 - Denial of Service
CVSS 5.5
CVE-2023-42840 MEDIUM
macOS - Info Disclosure
CVSS 5.5
CVE-2023-42839 MEDIUM
Apple Ipad OS < 17.1 - Denial of Service
CVSS 5.5
CVE-2023-42823 MEDIUM
Apple Ipados < 16.7.2 - Denial of Service
CVSS 5.5
CVE-2023-40093 MEDIUM
Google Android - Information Disclosure
CVSS 5.5
CVE-2023-50298 HIGH
Apache Solr < 8.11.3 - Information Disclosure
CVSS 7.5
CVE-2023-49515 MEDIUM
TP Link TC70 and C200 WIFI Camera <1.3.4 - Info Disclosure
CVSS 4.6
CVE-2023-37521 LOW
HCL BigFix Bare OSD Metal Server WebUI <311.19 - Info Disclosure
CVSS 2.3
CVE-2023-5879 MEDIUM
Aladdin Connect Mobile App <5.65.2075 - Info Disclosure
CVSS 6.8
CVE-2023-23437 LOW
Hihonor Vmall < 2.3.3.300 - Information Disclosure
CVSS 3.3
CVE-2023-45182 HIGH
IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 - Information Disclosure
CVSS 7.4
CVE-2023-45184 MEDIUM
IBM i Access Client Solutions <1.1.2, 1.1.4.3-1.1.9.3 - Info Disclo...
CVSS 6.2
CVE-2023-6460 MEDIUM
nodejs-firestore <6.1.0 - Info Disclosure
CVSS 4.0
CVE-2023-6253 MEDIUM
Digital Guardian's Agent <7.9.4 - Info Disclosure
CVSS 6.0
CVE-2023-41723 MEDIUM
Veeam ONE - Info Disclosure
CVSS 4.3
CVE-2023-34056 MEDIUM
vCenter Server - Info Disclosure
CVSS 4.3
CVE-2023-43634 HIGH
When sealing/unsealing the "vault" key - Info Disclosure
CVSS 8.8
Details
Vulnerabilities 368