Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-11-16 CVE-2021-38949 Cleartext Storage of Sensitive Information vulnerability in IBM MQ and Websphere MQ
IBM MQ 7.5, 8.0, 9.0 LTS, 9.1 CD, and 9.1 LTS stores user credentials in plain clear text which can be read by a local user.
local
low complexity
ibm CWE-312
5.5
2021-11-10 CVE-2021-37157 Cleartext Storage of Sensitive Information vulnerability in Opengamepanel 20210814
An issue was discovered in OpenGamePanel OGP-Agent-Linux through 2021-08-14.
network
low complexity
opengamepanel CWE-312
8.8
2021-11-08 CVE-2021-42370 Cleartext Storage of Sensitive Information vulnerability in Xorux Lpar2Rrd and Stor2Rrd
A password mismanagement situation exists in XoruX LPAR2RRD and STOR2RRD before 7.30 because cleartext information is present in HTML password input fields in the device properties.
network
low complexity
xorux CWE-312
7.5
2021-11-05 CVE-2021-25502 Cleartext Storage of Sensitive Information vulnerability in Google Android
A vulnerability of storing sensitive information insecurely in Property Settings prior to SMR Nov-2021 Release 1 allows attackers to read ESN value without priviledge.
local
low complexity
google CWE-312
5.5
2021-11-02 CVE-2020-15935 Cleartext Storage of Sensitive Information vulnerability in Fortinet Fortiadc
A cleartext storage of sensitive information in GUI in FortiADC versions 5.4.3 and below, 6.0.0 and below may allow a remote authenticated attacker to retrieve some sensitive information such as users LDAP passwords and RADIUS shared secret by deobfuscating the passwords entry fields.
network
low complexity
fortinet CWE-312
4.3
2021-11-02 CVE-2021-37842 Cleartext Storage of Sensitive Information vulnerability in Couchbase Server 7.0.0/7.0.1
metakv in Couchbase Server 7.0.0 uses Cleartext for Storage of Sensitive Information.
network
low complexity
couchbase CWE-312
7.5
2021-11-02 CVE-2021-42763 Cleartext Storage of Sensitive Information vulnerability in Couchbase Server
Couchbase Server before 6.6.3 and 7.x before 7.0.2 stores Sensitive Information in Cleartext.
network
low complexity
couchbase CWE-312
7.5
2021-10-27 CVE-2021-29786 Cleartext Storage of Sensitive Information vulnerability in IBM products
IBM Jazz Team Server products stores user credentials in clear text which can be read by an authenticated user.
network
low complexity
ibm CWE-312
6.5
2021-10-25 CVE-2021-40527 Cleartext Storage of Sensitive Information vulnerability in Onepeloton Peloton 1.7.22
Exposure of senstive information to an unauthorised actor in the "com.onepeloton.erlich" mobile application up to and including version 1.7.22 allows a remote attacker to access developer files stored in an AWS S3 bucket, by reading credentials stored in plain text within the mobile application.
network
low complexity
onepeloton CWE-312
7.5
2021-10-19 CVE-2021-38911 Cleartext Storage of Sensitive Information vulnerability in IBM Security Risk Manager on Cp4S 1.7.2.0
IBM Security Risk Manager on CP4S 1.7.0.0 stores user credentials in plain clear text which can be read by a an authenticatedl privileged user.
network
low complexity
ibm CWE-312
4.9