Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2020-07-23 CVE-2020-7517 Cleartext Storage of Sensitive Information vulnerability in Schneider-Electric Easergy Builder 1.4.7.2
A CWE-312: Cleartext Storage of Sensitive Information vulnerability exists in Easergy Builder (Version 1.4.7.2 and older) which could allow an attacker to read user credentials.
local
low complexity
schneider-electric CWE-312
5.5
2020-07-23 CVE-2020-7516 Cleartext Storage of Sensitive Information vulnerability in Schneider-Electric Easergy Builder 1.4.7.2
A CWE-316: Cleartext Storage of Sensitive Information in Memory vulnerability exists in Easergy Builder V1.4.7.2 and prior which could allow an attacker access to login credentials.
local
low complexity
schneider-electric CWE-312
7.8
2020-07-22 CVE-2020-4369 Cleartext Storage of Sensitive Information vulnerability in IBM Verify Gateway 1.0.0/1.0.1
IBM Verify Gateway (IVG) 1.0.0 and 1.0.1 stores highly sensitive information in cleartext that could be obtained by a user.
local
low complexity
ibm CWE-312
5.5
2020-07-10 CVE-2020-15105 Cleartext Storage of Sensitive Information vulnerability in Django Two-Factor Authentication Project Django Two-Factor Authentication
Django Two-Factor Authentication before 1.12, stores the user's password in clear text in the user session (base64-encoded).
5.4
2020-07-01 CVE-2019-4676 Cleartext Storage of Sensitive Information vulnerability in IBM Security Identity Manager Virtual Appliance 7.0.2
IBM Security Identity Manager Virtual Appliance 7.0.2 stores user credentials in plain in clear text which can be read by a local user.
local
low complexity
ibm CWE-312
7.8
2020-06-30 CVE-2020-15085 Cleartext Storage of Sensitive Information vulnerability in Mirumee Saleor
In Saleor Storefront before version 2.10.3, request data used to authenticate customers was inadvertently cached in the browser's local storage mechanism, including credentials.
local
low complexity
mirumee CWE-312
6.1
2020-06-29 CVE-2020-12032 Cleartext Storage of Sensitive Information vulnerability in Baxter Em1200 Firmware and Em2400 Firmware
Baxter ExactaMix EM 2400 Versions 1.10, 1.11 and ExactaMix EM1200 Versions 1.1, 1.2 systems store device data with sensitive information in an unencrypted database.
network
low complexity
baxter CWE-312
critical
9.1
2020-06-29 CVE-2019-18254 Cleartext Storage of Sensitive Information vulnerability in Biotronik products
BIOTRONIK CardioMessenger II, The affected products do not encrypt sensitive information while at rest.
low complexity
biotronik CWE-312
4.6
2020-06-24 CVE-2020-14017 Cleartext Storage of Sensitive Information vulnerability in Naviwebs Navigate CMS 2.9
An issue was discovered in Navigate CMS 2.9 r1433.
network
low complexity
naviwebs CWE-312
7.5
2020-06-24 CVE-2020-10273 Cleartext Storage of Sensitive Information vulnerability in multiple products
MiR controllers across firmware versions 2.8.1.1 and before do not encrypt or protect in any way the intellectual property artifacts installed in the robots.
7.5