Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-01-05 CVE-2020-23249 Cleartext Storage of Sensitive Information vulnerability in Gigamon Gigavue-Os
GigaVUE-OS (GVOS) 5.4 - 5.9 stores a Redis database password in plaintext.
network
low complexity
gigamon CWE-312
4.7
2020-12-31 CVE-2018-19941 Cleartext Storage of Sensitive Information vulnerability in Qnap QTS
A vulnerability has been reported to affect QNAP NAS.
network
low complexity
qnap CWE-312
7.5
2020-12-28 CVE-2020-13473 Cleartext Storage of Sensitive Information vulnerability in Nchsoftware Express Accounts 8.24
NCH Express Accounts 8.24 and earlier allows local users to discover the cleartext password by reading the configuration file.
local
low complexity
nchsoftware CWE-312
5.5
2020-12-23 CVE-2020-29550 Cleartext Storage of Sensitive Information vulnerability in Urve 24.03.2020
An issue was discovered in URVE Build 24.03.2020.
network
low complexity
urve CWE-312
7.5
2020-12-23 CVE-2020-35658 Cleartext Storage of Sensitive Information vulnerability in Titanhq Spamtitan
SpamTitan before 7.09 allows attackers to tamper with backups, because backups are not encrypted.
network
low complexity
titanhq CWE-312
5.3
2020-12-21 CVE-2020-4843 Cleartext Storage of Sensitive Information vulnerability in IBM Security Secret Server 10.6
IBM Security Secret Server 10.6 stores potentially sensitive information in config files that could be read by an authenticated user.
network
low complexity
ibm CWE-312
4.3
2020-12-14 CVE-2020-17511 Cleartext Storage of Sensitive Information vulnerability in Apache Airflow
In Airflow versions prior to 1.10.13, when creating a user using airflow CLI, the password gets logged in plain text in the Log table in Airflow Metadatase.
network
low complexity
apache CWE-312
6.5
2020-12-10 CVE-2019-4738 Cleartext Storage of Sensitive Information vulnerability in IBM Sterling B2B Integrator
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.1 discloses sensitive information to an authenticated user from the dashboard UI which could be used in further attacks against the system.
network
low complexity
ibm CWE-312
6.5
2020-12-09 CVE-2020-26816 Cleartext Storage of Sensitive Information vulnerability in SAP Netweaver Application Server Java
SAP AS JAVA (Key Storage Service), versions - 7.10, 7.11, 7.20 ,7.30, 7.31, 7.40, 7.50, has the key material which is stored in the SAP NetWeaver AS Java Key Storage service stored in the database in the DER encoded format and is not encrypted.
low complexity
sap CWE-312
4.5
2020-11-18 CVE-2020-28917 Cleartext Storage of Sensitive Information vulnerability in View Frontend Statistics Project View Frontend Statistics
An issue was discovered in the view_statistics (aka View frontend statistics) extension before 2.0.1 for TYPO3.
network
low complexity
view-frontend-statistics-project CWE-312
6.5