Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2023-01-26 CVE-2023-24454 Cleartext Storage of Sensitive Information vulnerability in Jenkins Testquality Updater 1.1/1.3
Jenkins TestQuality Updater Plugin 1.3 and earlier stores the TestQuality Updater password unencrypted in its global configuration file on the Jenkins controller where it can be viewed by users with access to the Jenkins controller file system.
local
low complexity
jenkins CWE-312
5.5
2023-01-22 CVE-2023-24055 Cleartext Storage of Sensitive Information vulnerability in Keepass
KeePass through 2.53 (in a default installation) allows an attacker, who has write access to the XML configuration file, to obtain the cleartext passwords by adding an export trigger.
local
low complexity
keepass CWE-312
5.5
2023-01-20 CVE-2022-38112 Cleartext Storage of Sensitive Information vulnerability in Solarwinds Database Performance Analyzer
In DPA 2022.4 and older releases, generated heap memory dumps contain sensitive information in cleartext.
network
low complexity
solarwinds CWE-312
7.5
2023-01-17 CVE-2022-45439 Cleartext Storage of Sensitive Information vulnerability in Zyxel Ax7501-B0 Firmware 5.17(Abpc.1)C0
A pair of spare WiFi credentials is stored in the configuration file of the Zyxel AX7501-B0 firmware prior to V5.17(ABPC.3)C0 in cleartext.
low complexity
zyxel CWE-312
6.5
2023-01-13 CVE-2022-42284 Cleartext Storage of Sensitive Information vulnerability in Nvidia BMC
NVIDIA BMC stores user passwords in an obfuscated form in a database accessible by the host.
local
low complexity
nvidia CWE-312
5.5
2023-01-09 CVE-2022-22470 Cleartext Storage of Sensitive Information vulnerability in IBM Security Verify Governance 10.0
IBM Security Verify Governance 10.0 stores user credentials in plain clear text which can be read by a local user.
local
low complexity
ibm CWE-312
5.5
2023-01-06 CVE-2022-45787 Cleartext Storage of Sensitive Information vulnerability in Apache James
Unproper laxist permissions on the temporary files used by MIME4J TempFileStorageProvider may lead to information disclosure to other local users.
local
low complexity
apache CWE-312
5.5
2023-01-05 CVE-2022-41740 Cleartext Storage of Sensitive Information vulnerability in IBM products
IBM Robotic Process Automation 20.12 through 21.0.6 could allow an attacker with physical access to the system to obtain highly sensitive information from system memory.
low complexity
ibm CWE-312
4.6
2023-01-01 CVE-2022-37785 Cleartext Storage of Sensitive Information vulnerability in Wecube-Platform Project Wecube-Platform 3.2.2
An issue was discovered in WeCube Platform 3.2.2.
network
low complexity
wecube-platform-project CWE-312
7.5
2022-12-26 CVE-2022-24120 Cleartext Storage of Sensitive Information vulnerability in GE products
Certain General Electric Renewable Energy products store cleartext credentials in flash memory.
low complexity
ge CWE-312
4.6