Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-02-05 CVE-2021-20623 Cleartext Transmission of Sensitive Information vulnerability in Panasonic Video Insight VMS 7.3.2.5/7.5
Video Insight VMS versions prior to 7.8 allows a remote attacker to execute arbitrary code with the system user privilege by sending a specially crafted request.
network
low complexity
panasonic CWE-319
critical
9.8
2021-02-02 CVE-2020-29662 Cleartext Transmission of Sensitive Information vulnerability in Linuxfoundation Harbor
In Harbor 2.0 before 2.0.5 and 2.1.x before 2.1.2 the catalog’s registry API is exposed on an unauthenticated path.
network
low complexity
linuxfoundation CWE-319
5.3
2021-01-26 CVE-2020-25169 Cleartext Transmission of Sensitive Information vulnerability in Reolink products
The affected Reolink P2P products do not sufficiently protect data transferred between the local device and Reolink servers.
network
low complexity
reolink CWE-319
7.5
2021-01-21 CVE-2020-4969 Cleartext Transmission of Sensitive Information vulnerability in IBM Security Identity Governance and Intelligence 5.2.6
IBM Security Identity Governance and Intelligence 5.2.6 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
network
high complexity
ibm CWE-319
5.9
2021-01-13 CVE-2020-4597 Cleartext Transmission of Sensitive Information vulnerability in IBM Security Guardium Insights 2.0.2
IBM Security Guardium Insights 2.0.2 does not set the secure attribute on authorization tokens or session cookies.
network
low complexity
ibm CWE-319
4.3
2021-01-07 CVE-2020-4893 Cleartext Transmission of Sensitive Information vulnerability in IBM Emptoris Strategic Supply Management
IBM Emptoris Strategic Supply Management 10.1.0, 10.1.1, and 10.1.3 transmits sensitive information in HTTP GET request parameters.
network
high complexity
ibm CWE-319
5.9
2021-01-05 CVE-2020-4899 Cleartext Transmission of Sensitive Information vulnerability in IBM API Connect
IBM API Connect 5.0.0.0 through 5.0.8.10 could potentially leak sensitive information or allow for data corruption due to plain text transmission of sensitive information across the network.
network
low complexity
ibm CWE-319
critical
9.1
2020-12-31 CVE-2018-19944 Cleartext Transmission of Sensitive Information vulnerability in Qnap QTS
A cleartext transmission of sensitive information vulnerability has been reported to affect certain QTS devices.
network
low complexity
qnap CWE-319
7.5
2020-12-23 CVE-2020-11718 Cleartext Transmission of Sensitive Information vulnerability in Bilanc 01431.01.2020
An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and below.
network
high complexity
bilanc CWE-319
7.4
2020-12-23 CVE-2020-35584 Cleartext Transmission of Sensitive Information vulnerability in Mersive Solstice POD Firmware
In Solstice Pod before 3.0.3, the web services allow users to connect to them over unencrypted channels via the Browser Look-in feature.
network
high complexity
mersive CWE-319
5.9