Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-26390 Cleartext Storage of Sensitive Information vulnerability in Baxter products
The Baxter Spectrum Wireless Battery Module (WBM) stores network credentials and PHI (only applicable to Spectrum IQ pumps using auto programming) in unencrypted form.
high complexity
baxter CWE-312
4.2
2022-09-08 CVE-2022-37857 Cleartext Storage of Sensitive Information vulnerability in Hauk Project Hauk 1.6.1
bilde2910 Hauk v1.6.1 requires a hardcoded password which by default is blank.
network
low complexity
hauk-project CWE-312
7.5
2022-09-07 CVE-2021-36782 Cleartext Storage of Sensitive Information vulnerability in Suse Rancher
A Cleartext Storage of Sensitive Information vulnerability in SUSE Rancher allows authenticated Cluster Owners, Cluster Members, Project Owners, Project Members and User Base to use the Kubernetes API to retrieve plaintext version of sensitive data.
network
low complexity
suse CWE-312
critical
9.9
2022-09-02 CVE-2022-22069 Cleartext Storage of Sensitive Information vulnerability in Qualcomm products
Devices with keyprotect off may store unencrypted keybox in RPMB and cause cryptographic issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
local
low complexity
qualcomm CWE-312
7.8
2022-09-01 CVE-2022-2739 Cleartext Storage of Sensitive Information vulnerability in multiple products
The version of podman as released for Red Hat Enterprise Linux 7 Extras via RHSA-2022:2190 advisory included an incorrect version of podman missing the fix for CVE-2020-14370, which was previously fixed via RHSA-2020:5056.
network
high complexity
redhat podman-project CWE-312
5.3
2022-09-01 CVE-2021-39009 Cleartext Storage of Sensitive Information vulnerability in multiple products
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local privileged user.
local
low complexity
ibm netapp CWE-312
5.5
2022-07-26 CVE-2022-30275 Cleartext Storage of Sensitive Information vulnerability in Motorolasolutions Mdlc 4.80.0024/4.82.004/4.83.001
The Motorola MOSCAD Toolbox software through 2022-05-02 relies on a cleartext password.
network
low complexity
motorolasolutions CWE-312
7.5
2022-07-26 CVE-2022-31205 Cleartext Storage of Sensitive Information vulnerability in Omron products
In Omron CS series, CJ series, and CP series PLCs through 2022-05-18, the password for access to the Web UI is stored in memory area D1449...D1452 and can be read out using the Omron FINS protocol without any further authentication.
network
low complexity
omron CWE-312
7.5
2022-07-13 CVE-2022-20219 Cleartext Storage of Sensitive Information vulnerability in Google Android
In multiple functions of StorageManagerService.java and UserManagerService.java, there is a possible way to leave user's directories unencrypted due to a logic error in the code.
local
low complexity
google CWE-312
5.5
2022-07-12 CVE-2022-22031 Cleartext Storage of Sensitive Information vulnerability in Microsoft products
Windows Credential Guard Domain-joined Public Key Elevation of Privilege Vulnerability
local
low complexity
microsoft CWE-312
7.8