Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2019-06-07 CVE-2019-12506 Cleartext Transmission of Sensitive Information vulnerability in Logitech R700 Laser Presentation Remote Firmware Wd802Xm/Wd904Xm
Due to unencrypted and unauthenticated data communication, the wireless presenter Logitech R700 Laser Presentation Remote R-R0010 is prone to keystroke injection attacks.
low complexity
logitech CWE-319
8.8
2019-06-07 CVE-2019-12505 Cleartext Transmission of Sensitive Information vulnerability in Inateck Wp1001 Firmware 1.3C
Due to unencrypted and unauthenticated data communication, the wireless presenter Inateck WP1001 v1.3C is prone to keystroke injection attacks.
low complexity
inateck CWE-319
8.8
2019-06-07 CVE-2019-12504 Cleartext Transmission of Sensitive Information vulnerability in Inateck Wp2002 Firmware
Due to unencrypted and unauthenticated data communication, the wireless presenter Inateck WP2002 is prone to keystroke injection attacks.
low complexity
inateck CWE-319
8.8
2019-06-06 CVE-2019-4162 Cleartext Transmission of Sensitive Information vulnerability in IBM Security Information Queue 1.0.0/1.0.1/1.0.2
IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, and 1.0.2 is missing the HTTP Strict Transport Security header.
network
low complexity
ibm CWE-319
7.5
2019-05-10 CVE-2019-5496 Cleartext Transmission of Sensitive Information vulnerability in Netapp Oncommand Insight
Oncommand Insight versions prior to 7.3.5 shipped without certain HTTP Security headers configured which could allow an attacker to obtain sensitive information via unspecified vectors.
network
low complexity
netapp CWE-319
7.5
2019-05-10 CVE-2019-5494 Cleartext Transmission of Sensitive Information vulnerability in Netapp Oncommand Unified Manager
OnCommand Unified Manager 7-Mode prior to version 5.2.4 shipped without certain HTTP Security headers configured which could allow an attacker to obtain sensitive information via unspecified vectors.
network
low complexity
netapp CWE-319
7.5
2019-05-03 CVE-2019-6613 Cleartext Transmission of Sensitive Information vulnerability in F5 products
On BIG-IP 13.0.0-13.1.1.4, 12.1.0-12.1.4, 11.6.1-11.6.3.4, and 11.5.2-11.5.8, SNMP may expose sensitive configuration objects over insecure transmission channels.
network
low complexity
f5 CWE-319
5.3
2019-04-26 CVE-2019-11220 Cleartext Transmission of Sensitive Information vulnerability in Ilnkp2P Project Ilnkp2P
An authentication flaw in Shenzhen Yunni Technology iLnkP2P allows remote attackers to actively intercept user-to-device traffic in cleartext, including video streams and device credentials.
network
high complexity
ilnkp2p-project CWE-319
8.1
2019-04-25 CVE-2019-3801 Cleartext Transmission of Sensitive Information vulnerability in Cloudfoundry Cf-Deployment
Cloud Foundry cf-deployment, versions prior to 7.9.0, contain java components that are using an insecure protocol to fetch dependencies when building.
network
low complexity
cloudfoundry CWE-319
critical
9.8
2019-04-25 CVE-2018-1360 Cleartext Transmission of Sensitive Information vulnerability in Fortinet Fortimanager
A cleartext transmission of sensitive information vulnerability in Fortinet FortiManager 5.2.0 through 5.2.7, 5.4.0 and 5.4.1 may allow an unauthenticated attacker in a man in the middle position to retrieve the admin password via intercepting REST API JSON responses.
network
high complexity
fortinet CWE-319
8.1