Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-05-17 CVE-2021-32456 Cleartext Transmission of Sensitive Information vulnerability in Sitel-Sa Remote Cap/Prx Firmware 5.2.01
SITEL CAP/PRX firmware version 5.2.01 allows an attacker with access to the local network of the device to obtain the authentication passwords by analysing the network traffic.
low complexity
sitel-sa CWE-319
6.5
2021-05-14 CVE-2021-20564 Cleartext Transmission of Sensitive Information vulnerability in IBM Cloud PAK for Security
IBM Cloud Pak for Security (CP4S) 1.4.0.0, 1.5.0.0, 1.5.0.1, 1.6.0.0, and 1.6.0.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
network
high complexity
ibm CWE-319
5.9
2021-05-14 CVE-2020-27184 Cleartext Transmission of Sensitive Information vulnerability in Moxa products
The NPort IA5000A Series devices use Telnet as one of the network device management services.
network
high complexity
moxa CWE-319
5.9
2021-05-14 CVE-2020-27185 Cleartext Transmission of Sensitive Information vulnerability in Moxa products
Cleartext transmission of sensitive information via Moxa Service in NPort IA5000A series serial devices.
network
low complexity
moxa CWE-319
7.5
2021-05-11 CVE-2021-31898 Cleartext Transmission of Sensitive Information vulnerability in Jetbrains Webstorm
In JetBrains WebStorm before 2021.1, HTTP requests were used instead of HTTPS.
network
low complexity
jetbrains CWE-319
7.5
2021-05-10 CVE-2021-3003 Cleartext Transmission of Sensitive Information vulnerability in Agenziaentrate Desktop Telematico 1.0.0
Agenzia delle Entrate Desktop Telematico 1.0.0 contacts the jws.agenziaentrate.it server over cleartext HTTP, which allows man-in-the-middle attackers to spoof product updates.
network
high complexity
agenziaentrate CWE-319
5.3
2021-05-07 CVE-2021-27569 Cleartext Transmission of Sensitive Information vulnerability in Remotemouse Emote Remote Mouse
An issue was discovered in Emote Remote Mouse through 4.0.0.0.
network
low complexity
remotemouse CWE-319
5.3
2021-05-07 CVE-2021-27574 Cleartext Transmission of Sensitive Information vulnerability in Remotemouse Emote Remote Mouse
An issue was discovered in Emote Remote Mouse through 4.0.0.0.
network
high complexity
remotemouse CWE-319
8.1
2021-04-28 CVE-2021-31815 Cleartext Transmission of Sensitive Information vulnerability in Google Google/Apple Exposure Notifications 20210427
GAEN (aka Google/Apple Exposure Notifications) through 2021-04-27 on Android allows attackers to obtain sensitive information, such as a user's location history, in-person social graph, and (sometimes) COVID-19 infection status, because Rolling Proximity Identifiers and MAC addresses are written to the Android system log, and many Android devices have applications (preinstalled by the hardware manufacturer or network operator) that read system log data and send it to third parties.
local
low complexity
google CWE-319
3.3
2021-04-27 CVE-2021-31671 Cleartext Transmission of Sensitive Information vulnerability in Pgsync Project Pgsync
pgsync before 0.6.7 is affected by Information Disclosure of sensitive information.
network
low complexity
pgsync-project CWE-319
7.5