CWE-922
Insecure Storage of Sensitive Information
The product stores sensitive information without properly limiting read or write access by unauthorized actors.
368 vulnerabilities with CWE-922
CVE-2023-32191
CRITICAL
RKE - Privilege Escalation
CVSS 9.9
CVE-2023-6748
MEDIUM
Custom Field Template <2.6.1 - Info Disclosure
CVSS 4.3
CVE-2023-6962
MEDIUM
WP Meta SEO <4.5.12 - Info Disclosure
CVSS 5.3
CVE-2023-52345
MEDIUM
Google Android - Information Disclosure
CVSS 6.0
CVE-2023-42913
HIGH
macOS Sonoma <14.2 - Info Disclosure
CVSS 8.8
CVE-2023-6565
MEDIUM
InfiniteWP Client <1.12.3 - Info Disclosure
CVSS 5.9
CVE-2023-45859
HIGH
Hazelcast <5.3.2 - Privilege Escalation
CVSS 7.6
CVE-2023-37540
LOW
Sametime Connect - Info Disclosure
CVSS 3.9
CVE-2023-42878
MEDIUM
Apple Ipad OS < 17.1 - Denial of Service
CVSS 5.5
CVE-2023-42840
MEDIUM
macOS - Info Disclosure
CVSS 5.5
CVE-2023-42839
MEDIUM
Apple Ipad OS < 17.1 - Denial of Service
CVSS 5.5
CVE-2023-42823
MEDIUM
Apple Ipados < 16.7.2 - Denial of Service
CVSS 5.5
CVE-2023-40093
MEDIUM
Google Android - Information Disclosure
CVSS 5.5
CVE-2023-50298
HIGH
Apache Solr < 8.11.3 - Information Disclosure
CVSS 7.5
CVE-2023-49515
MEDIUM
TP Link TC70 and C200 WIFI Camera <1.3.4 - Info Disclosure
CVSS 4.6
CVE-2023-37521
LOW
HCL BigFix Bare OSD Metal Server WebUI <311.19 - Info Disclosure
CVSS 2.3
CVE-2023-5879
MEDIUM
Aladdin Connect Mobile App <5.65.2075 - Info Disclosure
CVSS 6.8
CVE-2023-23437
LOW
Hihonor Vmall < 2.3.3.300 - Information Disclosure
CVSS 3.3
CVE-2023-45182
HIGH
IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 - Information Disclosure
CVSS 7.4
CVE-2023-45184
MEDIUM
IBM i Access Client Solutions <1.1.2, 1.1.4.3-1.1.9.3 - Info Disclo...
CVSS 6.2
CVE-2023-6460
MEDIUM
nodejs-firestore <6.1.0 - Info Disclosure
CVSS 4.0
CVE-2023-6253
MEDIUM
Digital Guardian's Agent <7.9.4 - Info Disclosure
CVSS 6.0
CVE-2023-41723
MEDIUM
Veeam ONE - Info Disclosure
CVSS 4.3
CVE-2023-34056
MEDIUM
vCenter Server - Info Disclosure
CVSS 4.3
CVE-2023-43634
HIGH
When sealing/unsealing the "vault" key - Info Disclosure
CVSS 8.8
Details
Vulnerabilities
368