Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2020-03-09 CVE-2020-2155 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Openshift Deployer
Jenkins OpenShift Deployer Plugin 1.2.0 and earlier transmits configured credentials in plain text as part of its global Jenkins configuration form, potentially resulting in their exposure.
network
low complexity
jenkins CWE-319
5.3
2020-03-09 CVE-2020-2153 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Backlog
Jenkins Backlog Plugin 2.4 and earlier transmits configured credentials in plain text as part of job configuration forms, potentially resulting in their exposure.
network
low complexity
jenkins CWE-319
4.3
2020-03-09 CVE-2020-2151 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Quality Gates
Jenkins Quality Gates Plugin 2.5 and earlier transmits configured credentials in plain text as part of its global Jenkins configuration form, potentially resulting in their exposure.
network
low complexity
jenkins CWE-319
5.3
2020-03-09 CVE-2020-2150 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Sonar Quality Gates
Jenkins Sonar Quality Gates Plugin 1.3.1 and earlier transmits configured credentials in plain text as part of its global Jenkins configuration form, potentially resulting in their exposure.
network
low complexity
jenkins CWE-319
5.3
2020-03-09 CVE-2020-2149 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Repository Connector
Jenkins Repository Connector Plugin 1.2.6 and earlier transmits configured credentials in plain text as part of its global Jenkins configuration form, potentially resulting in their exposure.
network
low complexity
jenkins CWE-319
5.3
2020-03-09 CVE-2020-2143 Cleartext Transmission of Sensitive Information vulnerability in Jenkins Logstash
Jenkins Logstash Plugin 2.3.1 and earlier transmits configured credentials in plain text as part of its global Jenkins configuration form, potentially resulting in their exposure.
network
low complexity
jenkins CWE-319
5.3
2020-03-04 CVE-2020-9550 Cleartext Transmission of Sensitive Information vulnerability in Rubetek Smarthome Firmware 2020
Rubetek SmartHome 2020 devices use unencrypted 433 MHz communication between controllers and beacons, allowing an attacker to sniff and spoof beacon requests remotely.
network
low complexity
rubetek CWE-319
critical
9.8
2020-03-04 CVE-2020-9477 Cleartext Transmission of Sensitive Information vulnerability in Humaxdigital Hga12R-02 Firmware Brgcaa1.1.53
An issue was discovered on HUMAX HGA12R-02 BRGCAA 1.1.53 devices.
network
low complexity
humaxdigital CWE-319
critical
9.8
2020-02-21 CVE-2020-7907 Cleartext Transmission of Sensitive Information vulnerability in Jetbrains Scala
In the JetBrains Scala plugin before 2019.2.1, some artefact dependencies were resolved over unencrypted connections.
network
low complexity
jetbrains CWE-319
7.5
2020-02-12 CVE-2020-5399 Cleartext Transmission of Sensitive Information vulnerability in multiple products
Cloud Foundry CredHub, versions prior to 2.5.10, connects to a MySQL database without TLS even when configured to use TLS.
network
high complexity
pivotal-software cloudfoundry CWE-319
7.4