Vulnerabilities > Cleartext Transmission of Sensitive Information
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-12-17 | CVE-2019-16568 | Cleartext Transmission of Sensitive Information vulnerability in Jenkins Sctmexecutor Jenkins SCTMExecutor Plugin 2.2 and earlier transmits previously configured service credentials in plain text as part of the global configuration, as well as individual jobs' configurations. | 5.3 |
2019-12-13 | CVE-2019-16732 | Cleartext Transmission of Sensitive Information vulnerability in multiple products Unencrypted HTTP communications for firmware upgrades in Petalk AI and PF-103 allow man-in-the-middle attackers to run arbitrary code as the root user. | 8.1 |
2019-12-12 | CVE-2019-18285 | Cleartext Transmission of Sensitive Information vulnerability in Siemens Sppa-T3000 Application Server R8.2 A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). | 5.9 |
2019-12-10 | CVE-2019-19251 | Cleartext Transmission of Sensitive Information vulnerability in Last.Fm Desktop The Last.fm desktop app (Last.fm Scrobbler) through 2.1.39 on macOS makes HTTP requests that include an API key without the use of SSL/TLS. | 5.3 |
2019-12-03 | CVE-2015-7542 | Cleartext Transmission of Sensitive Information vulnerability in multiple products A vulnerability exists in libgwenhywfar through 4.12.0 due to the usage of outdated bundled CA certificates. | 5.3 |
2019-12-02 | CVE-2019-19316 | Cleartext Transmission of Sensitive Information vulnerability in Hashicorp Terraform When using the Azure backend with a shared access signature (SAS), Terraform versions prior to 0.12.17 may transmit the token and state snapshot using cleartext HTTP. | 7.5 |
2019-12-02 | CVE-2012-5562 | Cleartext Transmission of Sensitive Information vulnerability in Redhat Satellite rhn-proxy: may transmit credentials over clear-text when accessing RHN Satellite | 6.5 |
2019-12-02 | CVE-2019-12503 | Cleartext Transmission of Sensitive Information vulnerability in Inateck Bcst-60 Firmware Due to unencrypted and unauthenticated data communication, the wireless barcode scanner Inateck BCST-60 is prone to keystroke injection attacks. | 9.8 |
2019-12-02 | CVE-2019-12388 | Cleartext Transmission of Sensitive Information vulnerability in Anviz Firmware Anviz access control devices perform cleartext transmission of sensitive information (passwords/pins and names) when replying to query on port tcp/5010. | 7.5 |
2019-11-30 | CVE-2019-19463 | Cleartext Transmission of Sensitive Information vulnerability in Huami MI FIT 4.0.10 The Anhui Huami Mi Fit application before 4.0.11 for Android has an Unencrypted Update Check. | 5.3 |