Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-01-26 CVE-2020-25169 Cleartext Transmission of Sensitive Information vulnerability in Reolink products
The affected Reolink P2P products do not sufficiently protect data transferred between the local device and Reolink servers.
network
low complexity
reolink CWE-319
5.0
2021-01-22 CVE-2021-21270 Cleartext Transmission of Sensitive Information vulnerability in Octopus Octopusdsc
OctopusDSC is a PowerShell module with DSC resources that can be used to install and configure an Octopus Deploy Server and Tentacle agent.
local
low complexity
octopus CWE-319
2.1
2021-01-21 CVE-2020-4969 Cleartext Transmission of Sensitive Information vulnerability in IBM Security Identity Governance and Intelligence 5.2.6
IBM Security Identity Governance and Intelligence 5.2.6 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
network
ibm CWE-319
4.3
2021-01-07 CVE-2020-4893 Cleartext Transmission of Sensitive Information vulnerability in IBM Emptoris Strategic Supply Management
IBM Emptoris Strategic Supply Management 10.1.0, 10.1.1, and 10.1.3 transmits sensitive information in HTTP GET request parameters.
network
ibm CWE-319
4.3
2021-01-05 CVE-2020-4899 Cleartext Transmission of Sensitive Information vulnerability in IBM API Connect
IBM API Connect 5.0.0.0 through 5.0.8.10 could potentially leak sensitive information or allow for data corruption due to plain text transmission of sensitive information across the network.
network
low complexity
ibm CWE-319
6.4
2020-12-31 CVE-2018-19944 Cleartext Transmission of Sensitive Information vulnerability in Qnap QTS
A cleartext transmission of sensitive information vulnerability has been reported to affect certain QTS devices.
network
low complexity
qnap CWE-319
5.0
2020-12-23 CVE-2020-11718 Cleartext Transmission of Sensitive Information vulnerability in Bilanc 01431.01.2020
An issue was discovered in Programi Bilanc build 007 release 014 31.01.2020 and below.
network
bilanc CWE-319
5.8
2020-12-23 CVE-2020-25190 Cleartext Transmission of Sensitive Information vulnerability in Moxa Nport Iaw5000A-I/O Firmware
The built-in WEB server for MOXA NPort IAW5000A-I/O firmware version 2.1 or lower stores and transmits the credentials of third-party services in cleartext.
network
low complexity
moxa CWE-319
5.0
2020-12-18 CVE-2020-13528 Cleartext Transmission of Sensitive Information vulnerability in Lantronix Xport Edge Firmware
An information disclosure vulnerability exists in the Web Manager and telnet CLI functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0.0R9, 3.4.0.0R12 and 4.2.0.0R7.
network
high complexity
lantronix CWE-319
5.3
2020-12-16 CVE-2020-14248 Cleartext Transmission of Sensitive Information vulnerability in Hcltech Bigfix Platform
BigFix Inventory up to v10.0.2 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.
network
low complexity
hcltech CWE-319
5.0