Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2018-08-13 CVE-2018-10634 Cleartext Transmission of Sensitive Information vulnerability in Medtronic products
Medtronic MMT 508 MiniMed insulin pump, 522 / MMT - 722 Paradigm REAL-TIME, 523 / MMT - 723 Paradigm Revel, 523K / MMT - 723K Paradigm Revel, and 551 / MMT - 751 MiniMed 530G communications between the pump and wireless accessories are transmitted in cleartext.
high complexity
medtronic CWE-319
5.3
2018-07-31 CVE-2018-11338 Cleartext Transmission of Sensitive Information vulnerability in Intuit Lacerte
Intuit Lacerte 2017 for Windows in a client/server environment transfers the entire customer list in cleartext over SMB, which allows attackers to (1) obtain sensitive information by sniffing the network or (2) conduct man-in-the-middle (MITM) attacks via unspecified vectors.
network
low complexity
intuit CWE-319
7.5
2018-07-24 CVE-2018-8855 Cleartext Transmission of Sensitive Information vulnerability in Echelon products
Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versions.
network
low complexity
echelon CWE-319
critical
9.8
2018-06-08 CVE-2018-4227 Cleartext Transmission of Sensitive Information vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-319
7.5
2018-06-05 CVE-2018-1454 Cleartext Transmission of Sensitive Information vulnerability in IBM Infosphere Information Server 11.3/11.5/11.7
IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
network
high complexity
ibm CWE-319
5.9
2018-06-04 CVE-2017-16041 Cleartext Transmission of Sensitive Information vulnerability in Ikst Project Ikst
ikst versions before 1.1.2 download resources over HTTP, which leaves it vulnerable to MITM attacks.
network
high complexity
ikst-project CWE-319
5.9
2018-06-04 CVE-2017-16040 Cleartext Transmission of Sensitive Information vulnerability in Gfe-Sass Project Gfe-Sass
gfe-sass is a library for promises (CommonJS/Promises/A,B,D) gfe-sass downloads resources over HTTP, which leaves it vulnerable to MITM attacks.
network
high complexity
gfe-sass-project CWE-319
8.1
2018-06-04 CVE-2017-16035 Cleartext Transmission of Sensitive Information vulnerability in Hubspot Hubl-Server
The hubl-server module is a wrapper for the HubL Development Server.
network
high complexity
hubspot CWE-319
8.1
2018-06-04 CVE-2018-1600 Cleartext Transmission of Sensitive Information vulnerability in IBM Bigfix Platform
IBM BigFix Platform 9.2 and 9.5 transmits sensitive or security-critical data in clear text in a communication channel that can be sniffed by unauthorized actors.
network
low complexity
ibm CWE-319
7.5
2018-05-30 CVE-2018-11477 Cleartext Transmission of Sensitive Information vulnerability in Vgate Icar 2 Wi-Fi Obd2 Firmware
An issue was discovered on Vgate iCar 2 Wi-Fi OBD2 Dongle devices.
low complexity
vgate CWE-319
6.5