Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-05-06 CVE-2021-22206 Cleartext Storage of Sensitive Information vulnerability in Gitlab
An issue has been discovered in GitLab affecting all versions starting from 11.6.
network
low complexity
gitlab CWE-312
4.0
2021-04-30 CVE-2021-21547 Cleartext Storage of Sensitive Information vulnerability in Dell products
Dell EMC Unity, UnityVSA, and Unity XT versions prior to 5.0.7.0.5.008 contain a plain-text password storage vulnerability when the Dell Upgrade Readiness Utility is run on the system.
local
low complexity
dell CWE-312
2.1
2021-04-28 CVE-2020-22783 Cleartext Storage of Sensitive Information vulnerability in Etherpad
Etherpad <1.8.3 stored passwords used by users insecurely in the database and in log files.
network
low complexity
etherpad CWE-312
4.0
2021-04-23 CVE-2021-31791 In Hardware Sentry KM before 10.0.01 for BMC PATROL, a cleartext password may be discovered after a failure or timeout of a command.
network
low complexity
CWE-312
5.0
2021-04-23 CVE-2021-25898 Cleartext Storage of Sensitive Information vulnerability in Void Aural REC Monitor 9.0.0.1
An issue was discovered in svc-login.php in Void Aural Rec Monitor 9.0.0.1.
network
low complexity
void CWE-312
5.0
2021-04-23 CVE-2021-31539 Cleartext Storage of Sensitive Information vulnerability in Wowza Streaming Engine
Wowza Streaming Engine before 4.8.8.01 (in a default installation) has cleartext passwords stored in the conf/admin.password file.
local
low complexity
wowza CWE-312
2.1
2021-04-13 CVE-2021-3473 Cleartext Storage of Sensitive Information vulnerability in Lenovo Xclarity Controller
An internal product security audit of Lenovo XClarity Controller (XCC) discovered that the XCC configuration backup/restore password may be written to an internal XCC log buffer if Lenovo XClarity Administrator (LXCA) is used to perform the backup/restore.
network
low complexity
lenovo CWE-312
4.0
2021-04-06 CVE-2021-25692 Cleartext Storage of Sensitive Information vulnerability in Teradici Pcoip Connection Manager and Security Gateway
Sensitive smart card data is logged in default INFO logs by Teradici's PCoIP Connection Manager and Security Gateway prior to version 21.01.3.
local
low complexity
teradici CWE-312
2.1
2021-04-06 CVE-2021-26833 Cleartext Storage of Sensitive Information vulnerability in Timelybills 1.21.115/1.7.0
Cleartext Storage in a File or on Disk in TimelyBills <= 1.7.0 for iOS and versions <= 1.21.115 for Android allows attacker who can locally read user's files obtain JWT tokens for user's account due to insufficient cache clearing mechanisms.
4.3
2021-04-02 CVE-2020-11924 Cleartext Storage of Sensitive Information vulnerability in Wizconnected Colors A60 Firmware 1.14.0
An issue was discovered in WiZ Colors A60 1.14.0.
local
low complexity
wizconnected CWE-312
2.1