Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-05-11 CVE-2021-31898 Cleartext Transmission of Sensitive Information vulnerability in Jetbrains Webstorm
In JetBrains WebStorm before 2021.1, HTTP requests were used instead of HTTPS.
network
low complexity
jetbrains CWE-319
7.5
2021-05-10 CVE-2021-3003 Cleartext Transmission of Sensitive Information vulnerability in Agenziaentrate Desktop Telematico 1.0.0
Agenzia delle Entrate Desktop Telematico 1.0.0 contacts the jws.agenziaentrate.it server over cleartext HTTP, which allows man-in-the-middle attackers to spoof product updates.
4.3
2021-05-07 CVE-2021-27569 Cleartext Transmission of Sensitive Information vulnerability in Remotemouse Emote Remote Mouse
An issue was discovered in Emote Remote Mouse through 4.0.0.0.
network
low complexity
remotemouse CWE-319
5.0
2021-05-07 CVE-2021-27574 Cleartext Transmission of Sensitive Information vulnerability in Remotemouse Emote Remote Mouse
An issue was discovered in Emote Remote Mouse through 4.0.0.0.
6.8
2021-04-28 CVE-2021-31815 Cleartext Transmission of Sensitive Information vulnerability in Google Google/Apple Exposure Notifications
GAEN (aka Google/Apple Exposure Notifications) through 2021-04-27 on Android allows attackers to obtain sensitive information, such as a user's location history, in-person social graph, and (sometimes) COVID-19 infection status, because Rolling Proximity Identifiers and MAC addresses are written to the Android system log, and many Android devices have applications (preinstalled by the hardware manufacturer or network operator) that read system log data and send it to third parties.
local
low complexity
google CWE-319
2.1
2021-04-27 CVE-2021-31671 Cleartext Transmission of Sensitive Information vulnerability in Pgsync Project Pgsync
pgsync before 0.6.7 is affected by Information Disclosure of sensitive information.
network
low complexity
pgsync-project CWE-319
5.0
2021-04-26 CVE-2021-3494 Cleartext Transmission of Sensitive Information vulnerability in Theforeman Foreman
A smart proxy that provides a restful API to various sub-systems of the Foreman is affected by the flaw which can cause a Man-in-the-Middle attack.
4.3
2021-04-20 CVE-2020-26197 Cleartext Transmission of Sensitive Information vulnerability in Dell EMC Powerscale Onefs
Dell PowerScale OneFS 8.1.0 - 9.1.0 contains an LDAP Provider inability to connect over TLSv1.2 vulnerability.
network
low complexity
dell CWE-319
critical
9.1
2021-04-19 CVE-2021-20992 Cleartext Transmission of Sensitive Information vulnerability in Fibaro Home Center 2 Firmware and Home Center Lite Firmware
In Fibaro Home Center 2 and Lite devices in all versions provide a web based management interface over unencrypted HTTP protocol.
network
low complexity
fibaro CWE-319
5.0
2021-04-15 CVE-2021-23884 Cleartext Transmission of Sensitive Information vulnerability in Mcafee Content Security Reporter
Cleartext Transmission of Sensitive Information vulnerability in the ePO Extension of McAfee Content Security Reporter (CSR) prior to 2.8.0 allows an ePO administrator to view the unencrypted password of the McAfee Web Gateway (MWG) or the password of the McAfee Web Gateway Cloud Server (MWGCS) read only user used to retrieve log files for analysis in CSR.
low complexity
mcafee CWE-319
4.3