Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2022-01-12 CVE-2022-23105 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Active Directory
Jenkins Active Directory Plugin 2.25 and earlier does not encrypt the transmission of data between the Jenkins controller and Active Directory servers in most configurations.
low complexity
jenkins CWE-319
6.5
2022-01-04 CVE-2021-40148 Cleartext Transmission of Sensitive Information vulnerability in Mediatek products
In Modem EMM, there is a possible information disclosure due to a missing data encryption.
network
low complexity
mediatek CWE-319
7.5
2021-12-30 CVE-2021-20154 Cleartext Transmission of Sensitive Information vulnerability in Trendnet Tew-827Dru Firmware 2.08B01
Trendnet AC2600 TEW-827DRU version 2.08B01 contains an security flaw in the web interface.
network
low complexity
trendnet CWE-319
7.5
2021-12-30 CVE-2021-20169 Cleartext Transmission of Sensitive Information vulnerability in Netgear Rax43 Firmware 1.0.3.96
Netgear RAX43 version 1.0.3.96 does not utilize secure communications to the web interface.
low complexity
netgear CWE-319
6.8
2021-12-30 CVE-2021-20174 Cleartext Transmission of Sensitive Information vulnerability in Netgear R6700 Firmware 1.0.4.120
Netgear Nighthawk R6700 version 1.0.4.120 does not utilize secure communication methods to the web interface.
network
low complexity
netgear CWE-319
7.5
2021-12-30 CVE-2021-20175 Cleartext Transmission of Sensitive Information vulnerability in Netgear R6700 Firmware 1.0.4.120
Netgear Nighthawk R6700 version 1.0.4.120 does not utilize secure communication methods to the SOAP interface.
network
low complexity
netgear CWE-319
7.5
2021-12-16 CVE-2021-45100 Cleartext Transmission of Sensitive Information vulnerability in multiple products
The ksmbd server through 3.4.2, as used in the Linux kernel through 5.15.8, sometimes communicates in cleartext even though encryption has been enabled.
network
low complexity
ksmbd-project netapp CWE-319
7.5
2021-12-02 CVE-2021-44518 Cleartext Transmission of Sensitive Information vulnerability in Digipas Egeetouch Manager
An issue was discovered in the eGeeTouch 3rd Generation Travel Padlock application for Android.
high complexity
digipas CWE-319
6.8
2021-12-01 CVE-2021-44480 Cleartext Transmission of Sensitive Information vulnerability in Wokkalokka Wokka Watch Q50 Firmware
Wokka Lokka Q50 devices through 2021-11-30 allow remote attackers (who know the SIM phone number and password) to listen to a device's surroundings via a callback in an SMS command, as demonstrated by the 123456 and 523681 default passwords.
network
high complexity
wokkalokka CWE-319
8.1
2021-11-18 CVE-2021-37939 Cleartext Transmission of Sensitive Information vulnerability in Elastic Kibana
It was discovered that Kibana’s JIRA connector & IBM Resilient connector could be used to return HTTP response data on internal hosts, which may be intentionally hidden from public view.
network
low complexity
elastic CWE-319
2.7