Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2022-12-22 CVE-2022-22758 Cleartext Transmission of Sensitive Information vulnerability in Mozilla Firefox
When clicking on a tel: link, USSD codes, specified after a <code>\*</code> character, would be included in the phone number.
network
low complexity
mozilla CWE-319
8.8
2022-12-22 CVE-2022-47895 Cleartext Transmission of Sensitive Information vulnerability in Jetbrains Intellij Idea
In JetBrains IntelliJ IDEA before 2022.3.1 the "Validate JSP File" action used the HTTP protocol to download required JAR files.
network
low complexity
jetbrains CWE-319
7.5
2022-12-19 CVE-2021-4258 Cleartext Transmission of Sensitive Information vulnerability in Whohas Project Whohas
A vulnerability was found in whohas.
network
low complexity
whohas-project CWE-319
7.5
2022-12-14 CVE-2020-4497 Cleartext Transmission of Sensitive Information vulnerability in IBM Spectrum Protect Plus
IBM Spectrum Protect Plus 10.1.0 through 10.1.12 discloses sensitive information due to unencrypted data being used in the communication flow between Spectrum Protect Plus vSnap and its agents.
network
high complexity
ibm CWE-319
5.9
2022-12-14 CVE-2020-9420 Cleartext Transmission of Sensitive Information vulnerability in Arcadyan Vrv9506Jac23 Firmware
The login password of the web administrative dashboard in Arcadyan Wifi routers VRV9506JAC23 is sent in cleartext, allowing an attacker to sniff and intercept traffic to learn the administrative credentials to the router.
network
low complexity
arcadyan CWE-319
6.5
2022-12-13 CVE-2022-43724 Cleartext Transmission of Sensitive Information vulnerability in Siemens Sicam Pas/Pqs
A vulnerability has been identified in SICAM PAS/PQS (All versions < V7.0).
network
low complexity
siemens CWE-319
critical
9.8
2022-12-12 CVE-2022-46685 Cleartext Transmission of Sensitive Information vulnerability in Gitea
In Jenkins Gitea Plugin 1.4.4 and earlier, the implementation of Gitea personal access tokens did not support credentials masking, potentially exposing them through the build log.
network
low complexity
gitea CWE-319
4.3
2022-12-08 CVE-2022-40939 Cleartext Transmission of Sensitive Information vulnerability in Secu Secustation Firmware
In certain Secustation products the administrator account password can be read.
network
low complexity
secu CWE-319
4.9
2022-12-08 CVE-2022-45877 Cleartext Transmission of Sensitive Information vulnerability in Openharmony
OpenHarmony-v3.1.4 and prior versions had an vulnerability.
high complexity
openharmony CWE-319
5.3
2022-12-05 CVE-2022-45478 Cleartext Transmission of Sensitive Information vulnerability in Telepad-App Telepad
Telepad allows an attacker (in a man-in-the-middle position between the server and a connected device) to see all data (including keypresses) in cleartext.
network
high complexity
telepad-app CWE-319
5.9