Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2022-12-22 CVE-2022-22457 Cleartext Storage of Sensitive Information vulnerability in IBM Security Verify Governance 10.0.1
IBM Security Verify Governance, Identity Manager 10.0.1 stores sensitive information including user credentials in plain clear text which can be read by a local privileged user.
local
low complexity
ibm CWE-312
4.4
2022-12-22 CVE-2022-42931 Cleartext Storage of Sensitive Information vulnerability in Mozilla Firefox
Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk.
local
low complexity
mozilla CWE-312
3.3
2022-12-19 CVE-2022-47512 Cleartext Storage of Sensitive Information vulnerability in Solarwinds Platform 2022.4.0
Sensitive information was stored in plain text in a file that is accessible by a user with a local account in Hybrid Cloud Observability (HCO)/ SolarWinds Platform 2022.4.
local
low complexity
solarwinds CWE-312
5.5
2022-12-13 CVE-2022-31697 Cleartext Storage of Sensitive Information vulnerability in VMWare Vcenter Server 6.5/6.7/7.0
The vCenter Server contains an information disclosure vulnerability due to the logging of credentials in plaintext.
local
low complexity
vmware CWE-312
5.5
2022-12-01 CVE-2022-35120 Cleartext Storage of Sensitive Information vulnerability in Ixpdata Easyinstall 6.6.14725
IXPdata EasyInstall 6.6.14725 contains an access control issue.
local
low complexity
ixpdata CWE-312
8.8
2022-11-29 CVE-2022-46155 Cleartext Storage of Sensitive Information vulnerability in Airtable
Airtable.js is the JavaScript client for Airtable.
network
high complexity
airtable CWE-312
6.4
2022-11-28 CVE-2022-24188 Cleartext Storage of Sensitive Information vulnerability in Sz-Fujia Ourphoto 1.4.1
The /device/signin end-point for the Ourphoto App version 1.4.1 discloses clear-text password information for functionality within the picture frame devices.
network
low complexity
sz-fujia CWE-312
7.5
2022-11-25 CVE-2022-25164 Cleartext Storage of Sensitive Information vulnerability in Mitsubishielectric GX Works3 and MX OPC UA Module Configurator-R
Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.095Z and Mitsubishi Electric MX OPC UA Module Configurator-R versions 1.08J and prior allows a remote unauthenticated attacker to disclose sensitive information.
network
low complexity
mitsubishielectric CWE-312
7.5
2022-11-25 CVE-2022-29826 Cleartext Storage of Sensitive Information vulnerability in Mitsubishielectric GX Works3
Cleartext Storage of Sensitive Information vulnerability in Mitsubishi Electric GX Works3 versions from 1.000A to 1.087R and Motion Control Setting(GX Works3 related software) versions from 1.000A to 1.042U allows a remote unauthenticated attacker to disclose sensitive information.
network
low complexity
mitsubishielectric CWE-312
7.5
2022-11-25 CVE-2022-29832 Cleartext Storage of Sensitive Information vulnerability in Mitsubishielectric GX Works3
Cleartext Storage of Sensitive Information in Memory vulnerability in Mitsubishi Electric Corporation GX Works3 versions 1.015R and later, GX Works2 all versions and GX Developer versions 8.40S and later allows a remote unauthenticated attacker to disclose sensitive information.
network
low complexity
mitsubishielectric CWE-312
6.5