Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-08-30 CVE-2021-39272 Cleartext Transmission of Sensitive Information vulnerability in multiple products
Fetchmail before 6.4.22 fails to enforce STARTTLS session encryption in some circumstances, such as a certain situation with IMAP and PREAUTH.
network
high complexity
fetchmail fedoraproject CWE-319
5.9
2021-08-25 CVE-2021-33883 Cleartext Transmission of Sensitive Information vulnerability in Bbraun Spacecom2
A Cleartext Transmission of Sensitive Information vulnerability in B.
network
low complexity
bbraun CWE-319
5.0
2021-07-26 CVE-2021-29769 Cleartext Transmission of Sensitive Information vulnerability in IBM I2 Analyze 4.3.0/4.3.1/4.3.2
IBM i2 Analyst's Notebook Premium (IBM i2 Analyze 4.3.0, 4.3.1, and 4.3.2) does not set the secure attribute on authorization tokens or session cookies.
network
ibm CWE-319
4.3
2021-07-26 CVE-2021-33900 Cleartext Transmission of Sensitive Information vulnerability in Apache Directory Studio
While investigating DIRSTUDIO-1219 it was noticed that configured StartTLS encryption was not applied when any SASL authentication mechanism (DIGEST-MD5, GSSAPI) was used.
network
low complexity
apache CWE-319
7.5
2021-07-19 CVE-2020-36423 Cleartext Transmission of Sensitive Information vulnerability in multiple products
An issue was discovered in Arm Mbed TLS before 2.23.0.
network
low complexity
arm debian CWE-319
7.5
2021-07-16 CVE-2020-4980 Cleartext Transmission of Sensitive Information vulnerability in IBM Qradar Security Information and Event Manager
IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest.
low complexity
ibm CWE-319
3.3
2021-07-15 CVE-2020-12730 Cleartext Transmission of Sensitive Information vulnerability in Magicsmotion Flamingo 2 Firmware
MagicMotion Flamingo 2 lacks BLE encryption, enabling data sniffing and packet forgery.
high complexity
magicsmotion CWE-319
5.3
2021-07-13 CVE-2021-1896 Cleartext Transmission of Sensitive Information vulnerability in Qualcomm products
Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Compute, Snapdragon Connectivity
low complexity
qualcomm CWE-319
4.3
2021-06-30 CVE-2021-22380 Cleartext Transmission of Sensitive Information vulnerability in Huawei Emui 9.1.0
There is a Cleartext Transmission of Sensitive Information Vulnerability in Huawei Smartphone.
network
low complexity
huawei CWE-319
6.4
2021-06-18 CVE-2021-23846 Cleartext Transmission of Sensitive Information vulnerability in Bosch B426 Firmware
When using http protocol, the user password is transmitted as a clear text parameter for which it is possible to be obtained by an attacker through a MITM attack.
network
bosch CWE-319
4.3