Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2022-09-01 CVE-2022-2739 Cleartext Storage of Sensitive Information vulnerability in multiple products
The version of podman as released for Red Hat Enterprise Linux 7 Extras via RHSA-2022:2190 advisory included an incorrect version of podman missing the fix for CVE-2020-14370, which was previously fixed via RHSA-2020:5056.
network
high complexity
redhat podman-project CWE-312
5.3
2022-09-01 CVE-2021-39009 Cleartext Storage of Sensitive Information vulnerability in multiple products
IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local privileged user.
local
low complexity
ibm netapp CWE-312
5.5
2022-08-26 CVE-2021-3585 Cleartext Storage of Sensitive Information vulnerability in Openstack Tripleo Heat Templates
A flaw was found in openstack-tripleo-heat-templates.
local
low complexity
openstack CWE-312
5.5
2022-08-10 CVE-2022-29090 Cleartext Storage of Sensitive Information vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains a Sensitive Data Exposure vulnerability.
network
low complexity
dell CWE-312
6.5
2022-08-10 CVE-2022-33928 Cleartext Storage of Sensitive Information vulnerability in Dell Wyse Management Suite
Dell Wyse Management Suite 3.6.1 and below contains an Plain-text Password Storage Vulnerability in UI.
network
low complexity
dell CWE-312
8.8
2022-08-02 CVE-2022-34924 Cleartext Storage of Sensitive Information vulnerability in Landray Office Automation
Lanling OA Landray Office Automation (OA) internal patch number #133383/#137780 contains an arbitrary file read vulnerability via the component /sys/ui/extend/varkind/custom.jsp.
network
low complexity
landray CWE-312
7.5
2022-07-26 CVE-2022-30275 Cleartext Storage of Sensitive Information vulnerability in Motorolasolutions Mdlc 4.80.0024/4.82.004/4.83.001
The Motorola MOSCAD Toolbox software through 2022-05-02 relies on a cleartext password.
network
low complexity
motorolasolutions CWE-312
7.5
2022-07-26 CVE-2022-31205 Cleartext Storage of Sensitive Information vulnerability in Omron products
In Omron CS series, CJ series, and CP series PLCs through 2022-05-18, the password for access to the Web UI is stored in memory area D1449...D1452 and can be read out using the Omron FINS protocol without any further authentication.
network
low complexity
omron CWE-312
7.5
2022-07-20 CVE-2022-24660 Cleartext Storage of Sensitive Information vulnerability in Goldshell Miner Firmware
The debug interface of Goldshell ASIC Miners v2.2.1 and below was discovered to be exposed publicly on the web interface, allowing attackers to access passwords and other sensitive information in plaintext.
network
low complexity
goldshell CWE-312
7.5
2022-07-18 CVE-2022-30626 Cleartext Storage of Sensitive Information vulnerability in Chcnav P5E Gnss Firmware 4.1/4.2
Browsing the path: http://ip/wifi_ap_pata_get.cmd, will show in the name of the existing access point on the component, and a password in clear text.
network
low complexity
chcnav CWE-312
7.5