Vulnerabilities > Cleartext Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2024-06-11 CVE-2024-28024 Cleartext Storage of Sensitive Information vulnerability in Hitachienergy Foxman-Un and Unem
A vulnerability exists in the FOXMAN-UN/UNEM in which sensitive information is stored in cleartext within a resource that might be accessible to another control sphere.
local
high complexity
hitachienergy CWE-312
4.1
2024-05-03 CVE-2023-27370 Cleartext Storage of Sensitive Information vulnerability in Netgear Rax30 Firmware
NETGEAR RAX30 Device Configuration Cleartext Storage Information Disclosure Vulnerability.
low complexity
netgear CWE-312
5.7
2024-04-18 CVE-2024-29956 Cleartext Storage of Sensitive Information vulnerability in Broadcom Brocade Sannav
A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a prints the Brocade SANnav password in clear text in supportsave logs when a user schedules a switch Supportsave from Brocade SANnav.
network
low complexity
broadcom CWE-312
6.5
2024-04-17 CVE-2024-29952 Cleartext Storage of Sensitive Information vulnerability in Broadcom Brocade Sannav
A vulnerability in Brocade SANnav before v2.3.1 and v2.3.0a could allow an authenticated user to print the Auth, Priv, and SSL key store passwords in unencrypted logs by manipulating command variables.
local
low complexity
broadcom CWE-312
5.5
2024-03-06 CVE-2024-20292 Cleartext Storage of Sensitive Information vulnerability in Cisco DUO Authentication for Windows Logon and RDP
A vulnerability in the logging component of Cisco Duo Authentication for Windows Logon and RDP could allow an authenticated, local attacker to view sensitive information in clear text on an affected system.
local
low complexity
cisco CWE-312
5.5
2024-02-07 CVE-2024-24488 Cleartext Storage of Sensitive Information vulnerability in Tendacn CP3 Firmware 11.10.00.2311090948
An issue in Shenzen Tenda Technology CP3V2.0 V11.10.00.2311090948 allows a local attacker to obtain sensitive information via the password component.
local
low complexity
tendacn CWE-312
5.5
2024-02-07 CVE-2023-31002 Cleartext Storage of Sensitive Information vulnerability in IBM Security Access Manager Container
IBM Security Access Manager Container 10.0.0.0 through 10.0.6.1 temporarily stores sensitive information in files that could be accessed by a local user.
local
low complexity
ibm CWE-312
5.5
2024-01-09 CVE-2023-27098 Cleartext Storage of Sensitive Information vulnerability in Tp-Link Tapo
TP-Link Tapo APK up to v2.12.703 uses hardcoded credentials for access to the login panel.
network
low complexity
tp-link CWE-312
7.5
2023-12-26 CVE-2023-6250 Cleartext Storage of Sensitive Information vulnerability in Bestwebsoft Like & Share
The BestWebSoft's Like & Share WordPress plugin before 2.74 discloses the content of password protected posts to unauthenticated users via a meta tag
network
low complexity
bestwebsoft CWE-312
7.5
2023-12-26 CVE-2023-50294 Cleartext Storage of Sensitive Information vulnerability in Weseek Growi
The App Settings (/admin/app) page in GROWI versions prior to v6.0.6 stores sensitive information in cleartext form.
network
low complexity
weseek CWE-312
6.5