Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2019-12-17 CVE-2019-16568 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Sctmexecutor
Jenkins SCTMExecutor Plugin 2.2 and earlier transmits previously configured service credentials in plain text as part of the global configuration, as well as individual jobs' configurations.
network
low complexity
jenkins CWE-319
5.3
2019-12-13 CVE-2019-16732 Cleartext Transmission of Sensitive Information vulnerability in multiple products
Unencrypted HTTP communications for firmware upgrades in Petalk AI and PF-103 allow man-in-the-middle attackers to run arbitrary code as the root user.
network
high complexity
skymee petwant CWE-319
8.1
2019-12-12 CVE-2019-18285 Cleartext Transmission of Sensitive Information vulnerability in Siemens Sppa-T3000 Application Server R8.2
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2).
network
high complexity
siemens CWE-319
5.9
2019-12-10 CVE-2019-19251 Cleartext Transmission of Sensitive Information vulnerability in Last.Fm Desktop
The Last.fm desktop app (Last.fm Scrobbler) through 2.1.39 on macOS makes HTTP requests that include an API key without the use of SSL/TLS.
network
low complexity
last-fm CWE-319
5.3
2019-12-03 CVE-2015-7542 Cleartext Transmission of Sensitive Information vulnerability in multiple products
A vulnerability exists in libgwenhywfar through 4.12.0 due to the usage of outdated bundled CA certificates.
network
low complexity
aquamaniac debian opensuse CWE-319
5.3
2019-12-02 CVE-2019-19316 Cleartext Transmission of Sensitive Information vulnerability in Hashicorp Terraform
When using the Azure backend with a shared access signature (SAS), Terraform versions prior to 0.12.17 may transmit the token and state snapshot using cleartext HTTP.
network
low complexity
hashicorp CWE-319
7.5
2019-12-02 CVE-2012-5562 Cleartext Transmission of Sensitive Information vulnerability in Redhat Satellite
rhn-proxy: may transmit credentials over clear-text when accessing RHN Satellite
low complexity
redhat CWE-319
6.5
2019-12-02 CVE-2019-12503 Cleartext Transmission of Sensitive Information vulnerability in Inateck Bcst-60 Firmware
Due to unencrypted and unauthenticated data communication, the wireless barcode scanner Inateck BCST-60 is prone to keystroke injection attacks.
network
low complexity
inateck CWE-319
critical
9.8
2019-12-02 CVE-2019-12388 Cleartext Transmission of Sensitive Information vulnerability in Anviz Firmware
Anviz access control devices perform cleartext transmission of sensitive information (passwords/pins and names) when replying to query on port tcp/5010.
network
low complexity
anviz CWE-319
7.5
2019-11-30 CVE-2019-19463 Cleartext Transmission of Sensitive Information vulnerability in Huami MI FIT 4.0.10
The Anhui Huami Mi Fit application before 4.0.11 for Android has an Unencrypted Update Check.
network
low complexity
huami CWE-319
5.3