Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2022-09-09 CVE-2022-26390 Cleartext Storage of Sensitive Information vulnerability in Baxter products
The Baxter Spectrum Wireless Battery Module (WBM) stores network credentials and PHI (only applicable to Spectrum IQ pumps using auto programming) in unencrypted form.
high complexity
baxter CWE-312
4.2
2022-09-08 CVE-2022-37857 Cleartext Storage of Sensitive Information vulnerability in Hauk Project Hauk 1.6.1
bilde2910 Hauk v1.6.1 requires a hardcoded password which by default is blank.
network
low complexity
hauk-project CWE-312
7.5
2022-09-02 CVE-2022-22069 Cleartext Storage of Sensitive Information vulnerability in Qualcomm products
Devices with keyprotect off may store unencrypted keybox in RPMB and cause cryptographic issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
local
low complexity
qualcomm CWE-312
7.8
2022-09-01 CVE-2022-2739 Cleartext Storage of Sensitive Information vulnerability in multiple products
The version of podman as released for Red Hat Enterprise Linux 7 Extras via RHSA-2022:2190 advisory included an incorrect version of podman missing the fix for CVE-2020-14370, which was previously fixed via RHSA-2020:5056.
network
high complexity
redhat podman-project CWE-312
5.3
2022-09-01 CVE-2021-39009 Cleartext Storage of Sensitive Information vulnerability in multiple products
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local privileged user.
local
low complexity
ibm netapp CWE-312
5.5
2022-08-26 CVE-2021-3585 Cleartext Storage of Sensitive Information vulnerability in Openstack Tripleo Heat Templates
A flaw was found in openstack-tripleo-heat-templates.
local
low complexity
openstack CWE-312
5.5
2022-08-10 CVE-2022-29090 Cleartext Storage of Sensitive Information vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Sensitive Data Exposure vulnerability.
network
low complexity
dell CWE-312
6.5
2022-08-10 CVE-2022-33928 Cleartext Storage of Sensitive Information vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Plain-text Password Storage Vulnerability in UI.
network
low complexity
dell CWE-312
8.8
2022-08-02 CVE-2022-34924 Cleartext Storage of Sensitive Information vulnerability in Landray Office Automation
Lanling OA Landray Office Automation (OA) internal patch number #133383/#137780 contains an arbitrary file read vulnerability via the component /sys/ui/extend/varkind/custom.jsp.
network
low complexity
landray CWE-312
7.5
2022-07-26 CVE-2022-30275 Cleartext Storage of Sensitive Information vulnerability in Motorolasolutions Mdlc 4.80.0024/4.82.004/4.83.001
The Motorola MOSCAD Toolbox software through 2022-05-02 relies on a cleartext password.
network
low complexity
motorolasolutions CWE-312
7.5