Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-01-27 CVE-2020-4189 Cleartext Storage of Sensitive Information vulnerability in IBM Security Guardium 11.2
IBM Security Guardium 11.2 discloses sensitive information in the response headers that could be used in further attacks against the system.
network
low complexity
ibm CWE-312
4.0
2021-01-26 CVE-2020-29001 Cleartext Storage of Sensitive Information vulnerability in Merkuryinnovations products
An issue was discovered on Geeni GNC-CW028 Camera 2.7.2, Geeni GNC-CW025 Doorbell 2.9.5, Merkury MI-CW024 Doorbell 2.9.6, and Merkury MI-CW017 Camera 2.9.6 devices.
network
low complexity
merkuryinnovations CWE-312
6.5
2021-01-20 CVE-2021-1265 Cleartext Storage of Sensitive Information vulnerability in Cisco DNA Center
A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the full unmasked running configuration of managed devices.
network
low complexity
cisco CWE-312
4.0
2021-01-13 CVE-2020-4604 Cleartext Storage of Sensitive Information vulnerability in IBM Security Guardium Insights 2.0.2
IBM Security Guardium Insights 2.0.2 stores user credentials in plain in clear text which can be read by a local privileged user.
local
low complexity
ibm CWE-312
2.1
2021-01-13 CVE-2019-4687 Cleartext Storage of Sensitive Information vulnerability in IBM Security Guardium Data Encrpytion 3.0.0.2
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 stores sensitive information in URL parameters.
network
low complexity
ibm CWE-312
5.0
2021-01-08 CVE-2020-5018 Cleartext Storage of Sensitive Information vulnerability in IBM Spectrum Protect Plus
IBM Spectrum Protect Plus 10.1.0 through 10.1.6 may include sensitive information in its URLs increasing the risk of such information being caputured by an attacker.
network
low complexity
ibm CWE-312
5.0
2021-01-08 CVE-2020-25678 Cleartext Storage of Sensitive Information vulnerability in multiple products
A flaw was found in ceph in versions prior to 16.y.z where ceph stores mgr module passwords in clear text.
local
low complexity
redhat fedoraproject CWE-312
4.4
2021-01-08 CVE-2020-5805 Cleartext Storage of Sensitive Information vulnerability in Marvell Qconvergeconslole GUI 5.5.0.74
In Marvell QConvergeConsole GUI <= 5.5.0.74, credentials are stored in cleartext in tomcat-users.xml.
network
low complexity
marvell CWE-312
critical
9.0
2021-01-08 CVE-2020-24577 Cleartext Storage of Sensitive Information vulnerability in Dlink Dsl-2888A Firmware
An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55.
network
low complexity
dlink CWE-312
5.0
2021-01-05 CVE-2020-29502 Cleartext Storage of Sensitive Information vulnerability in Dell EMC Powerstore Firmware
Dell EMC PowerStore versions prior to 1.0.3.0.5.007 contain a Plain-Text Password Storage Vulnerability in PowerStore X & T environments.
local
low complexity
dell CWE-312
4.6