Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2022-04-29 CVE-2022-29945 Cleartext Transmission of Sensitive Information vulnerability in DJI products
DJI drone devices sold in 2017 through 2022 broadcast unencrypted information about the drone operator's physical location via the AeroScope protocol.
network
low complexity
dji CWE-319
7.5
2022-04-14 CVE-2021-40392 Cleartext Transmission of Sensitive Information vulnerability in Moxa Mxview 3.2.4
An information disclosure vulnerability exists in the Web Application functionality of Moxa MXView Series 3.2.4.
network
low complexity
moxa CWE-319
7.5
2022-04-06 CVE-2021-45104 Cleartext Transmission of Sensitive Information vulnerability in Wisc Htcondor
An issue was discovered in HTCondor 9.0.x before 9.0.10 and 9.1.x before 9.5.1.
network
high complexity
wisc CWE-319
7.4
2022-04-05 CVE-2021-45894 Cleartext Transmission of Sensitive Information vulnerability in Zauner ARC 4.2.0.4
An issue was discovered in Softwarebuero Zauner ARC 4.2.0.4.
network
high complexity
zauner CWE-319
5.9
2022-04-04 CVE-2021-32982 Cleartext Transmission of Sensitive Information vulnerability in Automationdirect products
Automation Direct CLICK PLC CPU Modules: C0-1x CPUs with firmware prior to v3.00 passwords are sent as plaintext during unlocking and project transfers.
network
low complexity
automationdirect CWE-319
7.5
2022-04-01 CVE-2021-33022 Cleartext Transmission of Sensitive Information vulnerability in Philips products
Philips Vue PACS versions 12.2.x.x and prior transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
network
low complexity
philips CWE-319
7.5
2022-03-28 CVE-2003-5002 Cleartext Transmission of Sensitive Information vulnerability in IBM ISS Blackice PC Protection
A vulnerability was found in ISS BlackICE PC Protection.
network
low complexity
ibm CWE-319
5.3
2022-03-25 CVE-2022-0988 Cleartext Transmission of Sensitive Information vulnerability in Deltaww Diaenergie 1.7.5
Delta Electronics DIAEnergie (Version 1.7.5 and prior) is vulnerable to cleartext transmission as the web application runs by default on HTTP.
network
low complexity
deltaww CWE-319
7.5
2022-03-23 CVE-2021-27422 Cleartext Transmission of Sensitive Information vulnerability in GE products
GE UR firmware versions prior to version 8.1x web server interface is supported on UR over HTTP protocol.
network
low complexity
ge CWE-319
7.5
2022-03-18 CVE-2020-25178 Cleartext Transmission of Sensitive Information vulnerability in multiple products
ISaGRAF Workbench communicates with Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x using TCP/IP.
8.8