Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2024-07-26 CVE-2024-41691 Cleartext Storage of Sensitive Information vulnerability in Syrotech Sy-Gpon-1110-Wdont Firmware 3.1.02231102
This vulnerability exists in SyroTech SY-GPON-1110-WDONT Router due to storing of FTP credentials in plaintext within the SquashFS-root filesystem associated with the router's firmware.
low complexity
syrotech CWE-312
4.6
2024-07-16 CVE-2019-16638 Cleartext Storage of Sensitive Information vulnerability in Ruijie Eg-2000Se Firmware 11.1(1)B1
An issue was found on the Ruijie EG-2000 series gateway.
network
low complexity
ruijie CWE-312
7.5
2024-07-14 CVE-2024-39732 Cleartext Storage of Sensitive Information vulnerability in IBM Datacap
IBM Datacap Navigator 9.1.5, 9.1.6, 9.1.7, 9.1.8, and 9.1.9 temporarily stores data from different environments that could be obtained by a malicious user.
network
low complexity
ibm CWE-312
7.5
2024-06-13 CVE-2024-38280 Cleartext Storage of Sensitive Information vulnerability in Motorola Vigilant Fixed LPR Coms BOX Firmware
An unauthorized user is able to gain access to sensitive data, including credentials, by physically retrieving the hard disk of the product as the data is stored in clear text.
low complexity
motorola CWE-312
4.6
2024-06-11 CVE-2024-28024 Cleartext Storage of Sensitive Information vulnerability in Hitachienergy Foxman-Un and Unem
A vulnerability exists in the FOXMAN-UN/UNEM in which sensitive information is stored in cleartext within a resource that might be accessible to another control sphere.
local
high complexity
hitachienergy CWE-312
4.1
2024-02-07 CVE-2024-24488 Cleartext Storage of Sensitive Information vulnerability in Tendacn CP3 Firmware 11.10.00.2311090948
An issue in Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 allows a local attacker to obtain sensitive information via the password component.
local
low complexity
tendacn CWE-312
5.5
2024-02-07 CVE-2023-31002 Cleartext Storage of Sensitive Information vulnerability in IBM Security Access Manager Container
IBM Security Access Manager Container 10.0.0.0 through 10.0.6.1 temporarily stores sensitive information in files that could be accessed by a local user.
local
low complexity
ibm CWE-312
5.5
2024-01-09 CVE-2023-27098 Cleartext Storage of Sensitive Information vulnerability in Tp-Link Tapo
TP-Link Tapo APK up to v2.12.703 uses hardcoded credentials for access to the login panel.
network
low complexity
tp-link CWE-312
7.5
2023-12-26 CVE-2023-6250 Cleartext Storage of Sensitive Information vulnerability in Bestwebsoft Like & Share
The BestWebSoft's Like & Share WordPress plugin before 2.74 discloses the content of password protected posts to unauthenticated users via a meta tag
network
low complexity
bestwebsoft CWE-312
7.5
2023-12-26 CVE-2023-50294 Cleartext Storage of Sensitive Information vulnerability in Weseek Growi
The App Settings (/admin/app) page in GROWI versions prior to v6.0.6 stores sensitive information in cleartext form.
network
low complexity
weseek CWE-312
6.5