Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2024-02-09 CVE-2023-45716 Cleartext Transmission of Sensitive Information vulnerability in Hcltech Sametime 11.6/12.0
Sametime is impacted by sensitive information passed in URL.
low complexity
hcltech CWE-319
4.1
2024-02-09 CVE-2023-42016 Cleartext Transmission of Sensitive Information vulnerability in IBM Sterling B2B Integrator
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.8 and 6.1.0.0 through 6.1.2.3 does not set the secure attribute on authorization tokens or session cookies.
network
low complexity
ibm CWE-319
4.3
2024-02-07 CVE-2023-32328 Cleartext Transmission of Sensitive Information vulnerability in IBM Security Verify Access
IBM Security Verify Access 10.0.0.0 through 10.0.6.1 uses insecure protocols in some instances that could allow an attacker on the network to take control of the server.
network
low complexity
ibm CWE-319
critical
9.8
2024-02-06 CVE-2023-40544 Cleartext Transmission of Sensitive Information vulnerability in Westermo L206-F2G Firmware 4.24
An attacker with access to the network where the affected devices are located could maliciously actions to obtain, via a sniffer, sensitive information exchanged via TCP communications.
low complexity
westermo CWE-319
5.7
2024-02-02 CVE-2023-50962 Cleartext Transmission of Sensitive Information vulnerability in IBM Powersc 1.3/2.0/2.1
IBM PowerSC 1.3, 2.0, and 2.1 MFA does not implement the "HTTP Strict Transport Security" (HSTS) web security policy mechanism.
network
low complexity
ibm CWE-319
7.5
2024-01-23 CVE-2023-42144 Cleartext Transmission of Sensitive Information vulnerability in Shelly TRV Firmware 2.1.8
Cleartext Transmission during initial setup in Shelly TRV 20220811-15234 v.2.1.8 allows a local attacker to obtain the Wi-Fi password.
local
low complexity
shelly CWE-319
5.5
2024-01-23 CVE-2023-46889 Cleartext Transmission of Sensitive Information vulnerability in Meross Msh30Q Firmware 4.5.23
Meross MSH30Q 4.5.23 is vulnerable to Cleartext Transmission of Sensitive Information.
low complexity
meross CWE-319
5.7
2024-01-20 CVE-2023-46447 Cleartext Transmission of Sensitive Information vulnerability in Popsdiabetes Rebel 5.0
The POPS! Rebel application 5.0 for Android, in POPS! Rebel Bluetooth Glucose Monitoring System, sends unencrypted glucose measurements over BLE.
low complexity
popsdiabetes CWE-319
4.3
2024-01-18 CVE-2023-50614 Cleartext Transmission of Sensitive Information vulnerability in Cdebyte E880-Ir01 Firmware 1.1
An issue discovereed in EBYTE E880-IR01-V1.1 allows an attacker to obtain sensitive information via crafted POST request to /cgi-bin/luci.
network
low complexity
cdebyte CWE-319
7.5
2024-01-17 CVE-2023-51740 Cleartext Transmission of Sensitive Information vulnerability in Skyworthdigital Cm5100 Firmware 4.1.1.24
This vulnerability exist in Skyworth Router CM5100, version 4.1.1.24, due to transmission of authentication credentials in plaintext over the network.
network
low complexity
skyworthdigital CWE-319
7.5