Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2020-03-24 CVE-2020-7003 Cleartext Transmission of Sensitive Information vulnerability in Moxa products
In Moxa ioLogik 2500 series firmware, Version 3.0 or lower, and IOxpress configuration utility, Version 2.3.0 or lower, sensitive information is transmitted over some web applications in clear text.
network
low complexity
moxa CWE-319
7.5
2020-03-19 CVE-2019-16063 Cleartext Transmission of Sensitive Information vulnerability in Netsas Enigma Network Management Solution
NETSAS Enigma NMS 65.0.0 and prior does not encrypt sensitive data rendered within web pages.
network
low complexity
netsas CWE-319
7.5
2020-03-18 CVE-2019-12122 Cleartext Transmission of Sensitive Information vulnerability in Onap Open Network Automation Platform 3.0.0/3.0.1/3.0.2
An issue was discovered in ONAP Portal through Dublin.
network
low complexity
onap CWE-319
6.5
2020-03-12 CVE-2020-0884 Cleartext Transmission of Sensitive Information vulnerability in Microsoft Visual Studio 2017 and Visual Studio 2019
A spoofing vulnerability exists in Microsoft Visual Studio as it includes a reply URL that is not secured by SSL, aka 'Microsoft Visual Studio Spoofing Vulnerability'.
network
high complexity
microsoft CWE-319
3.7
2020-03-11 CVE-2019-5107 Cleartext Transmission of Sensitive Information vulnerability in Wago E!Cockpit 1.5.1.1
A cleartext transmission vulnerability exists in the network communication functionality of WAGO e!Cockpit version 1.5.1.1.
network
low complexity
wago CWE-319
7.5
2020-03-11 CVE-2019-9101 Cleartext Transmission of Sensitive Information vulnerability in Moxa products
An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB3180 devices before 2.1.
network
low complexity
moxa CWE-319
7.5
2020-03-11 CVE-2020-10376 Cleartext Transmission of Sensitive Information vulnerability in Technicolor Tc7337Net Firmware 08.89.17.23.03
Technicolor TC7337NET 08.89.17.23.03 devices allow remote attackers to discover passwords by sniffing the network for an "Authorization: Basic" HTTP header.
network
low complexity
technicolor CWE-319
critical
9.8
2020-03-10 CVE-2020-6198 Cleartext Transmission of Sensitive Information vulnerability in SAP Solution Manager 7.20
SAP Solution Manager (Diagnostics Agent), version 720, allows unencrypted connections from unauthenticated sources.
network
low complexity
sap CWE-319
critical
9.8
2020-03-09 CVE-2020-2157 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Skytap Cloud CI
Jenkins Skytap Cloud CI Plugin 2.07 and earlier transmits configured credentials in plain text as part of job configuration forms, potentially resulting in their exposure.
network
low complexity
jenkins CWE-319
4.3
2020-03-09 CVE-2020-2156 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Deployhub
Jenkins DeployHub Plugin 8.0.14 and earlier transmits configured credentials in plain text as part of job configuration forms, potentially resulting in their exposure.
network
low complexity
jenkins CWE-319
4.3