Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-12-16 CVE-2021-45100 Cleartext Transmission of Sensitive Information vulnerability in multiple products
The ksmbd server through 3.4.2, as used in the Linux kernel through 5.15.8, sometimes communicates in cleartext even though encryption has been enabled.
network
low complexity
ksmbd-project netapp CWE-319
7.5
2021-12-02 CVE-2021-44518 Cleartext Transmission of Sensitive Information vulnerability in Digipas Egeetouch Manager
An issue was discovered in the eGeeTouch 3rd Generation Travel Padlock application for Android.
high complexity
digipas CWE-319
6.8
2021-12-01 CVE-2021-44480 Cleartext Transmission of Sensitive Information vulnerability in Wokkalokka Wokka Watch Q50 Firmware
Wokka Lokka Q50 devices through 2021-11-30 allow remote attackers (who know the SIM phone number and password) to listen to a device's surroundings via a callback in an SMS command, as demonstrated by the 123456 and 523681 default passwords.
network
high complexity
wokkalokka CWE-319
8.1
2021-11-18 CVE-2021-37939 Cleartext Transmission of Sensitive Information vulnerability in Elastic Kibana
It was discovered that Kibana’s JIRA connector & IBM Resilient connector could be used to return HTTP response data on internal hosts, which may be intentionally hidden from public view.
network
low complexity
elastic CWE-319
2.7
2021-11-15 CVE-2021-38978 Cleartext Transmission of Sensitive Information vulnerability in IBM products
IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
network
high complexity
ibm CWE-319
5.9
2021-11-12 CVE-2021-3792 Cleartext Transmission of Sensitive Information vulnerability in Binatoneglobal products
Some device communications in some Motorola-branded Binatone Hubble Cameras with backend Hubble services are not encrypted which could lead to the communication channel being accessible by an attacker.
network
low complexity
binatoneglobal CWE-319
5.3
2021-11-09 CVE-2021-40366 Cleartext Transmission of Sensitive Information vulnerability in Siemens Climatix Pol909 Firmware
A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.42), Climatix POL909 (AWM module) (All versions < V11.34).
network
high complexity
siemens CWE-319
7.4
2021-11-08 CVE-2020-4152 Cleartext Transmission of Sensitive Information vulnerability in IBM Qradar Network Security
IBM QRadar Network Security 5.4.0 and 5.5.0 transmits sensitive or security-critical data in cleartext in a communication channel that can be obtained using man in the middle techniques.
network
high complexity
ibm CWE-319
5.9
2021-11-05 CVE-2021-3774 Cleartext Transmission of Sensitive Information vulnerability in Meross Mss550X Firmware 3.1.3
Meross Smart Wi-Fi 2 Way Wall Switch (MSS550X), on its 3.1.3 version and before, creates an open Wi-Fi Access Point without the required security measures in its initial setup.
network
low complexity
meross CWE-319
6.5
2021-11-05 CVE-2021-29753 Cleartext Transmission of Sensitive Information vulnerability in IBM products
IBM Business Automation Workflow 18.
network
high complexity
ibm CWE-319
5.9