Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2022-02-04 CVE-2021-29397 Cleartext Transmission of Sensitive Information vulnerability in Globalnorthstar Northstar Club Management 6.3
Cleartext Transmission of Sensitive Information in /northstar/Admin/login.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote local user to intercept users credentials transmitted in cleartext over HTTP.
network
low complexity
globalnorthstar CWE-319
7.5
2022-02-04 CVE-2021-45735 Cleartext Transmission of Sensitive Information vulnerability in Totolink X5000R Firmware 9.1.0U.6118B20201102
TOTOLINK X5000R v9.1.0u.6118_B20201102 was discovered to use the HTTP protocol for authentication into the admin interface, allowing attackers to intercept user credentials via packet capture software.
network
low complexity
totolink CWE-319
7.5
2022-01-21 CVE-2021-41835 Cleartext Transmission of Sensitive Information vulnerability in Fresenius-Kabi products
Fresenius Kabi Agilia Link + version 3.0 does not enforce transport layer encryption.
network
low complexity
fresenius-kabi CWE-319
7.5
2022-01-12 CVE-2022-23105 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Active Directory
Jenkins Active Directory Plugin 2.25 and earlier does not encrypt the transmission of data between the Jenkins controller and Active Directory servers in most configurations.
low complexity
jenkins CWE-319
6.5
2022-01-04 CVE-2021-40148 Cleartext Transmission of Sensitive Information vulnerability in Mediatek products
In Modem EMM, there is a possible information disclosure due to a missing data encryption.
network
low complexity
mediatek CWE-319
7.5
2021-12-30 CVE-2021-20154 Cleartext Transmission of Sensitive Information vulnerability in Trendnet Tew-827Dru Firmware 2.08B01
Trendnet AC2600 TEW-827DRU version 2.08B01 contains an security flaw in the web interface.
network
low complexity
trendnet CWE-319
7.5
2021-12-30 CVE-2021-20169 Cleartext Transmission of Sensitive Information vulnerability in Netgear Rax43 Firmware 1.0.3.96
Netgear RAX43 version 1.0.3.96 does not utilize secure communications to the web interface.
low complexity
netgear CWE-319
6.8
2021-12-30 CVE-2021-20174 Cleartext Transmission of Sensitive Information vulnerability in Netgear R6700 Firmware 1.0.4.120
Netgear Nighthawk R6700 version 1.0.4.120 does not utilize secure communication methods to the web interface.
network
low complexity
netgear CWE-319
7.5
2021-12-30 CVE-2021-20175 Cleartext Transmission of Sensitive Information vulnerability in Netgear R6700 Firmware 1.0.4.120
Netgear Nighthawk R6700 version 1.0.4.120 does not utilize secure communication methods to the SOAP interface.
network
low complexity
netgear CWE-319
7.5
2021-12-27 CVE-2021-4161 Cleartext Transmission of Sensitive Information vulnerability in Moxa products
The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login credential details.
network
low complexity
moxa CWE-319
7.5