Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2017-12-01 CVE-2017-14486 Cleartext Transmission of Sensitive Information vulnerability in Vibease Chat and Wireless Remote Vibrator
The Vibease Wireless Remote Vibrator app for Android and the Vibease Chat app for iOS use cleartext to exchange messages with other apps and the PLAIN SASL mechanism to send auth tokens to Vibease servers, which allows remote attackers to obtain user credentials, messages, and other sensitive information by sniffing the network for XMPP traffic.
network
low complexity
vibease CWE-319
5.0
2017-10-29 CVE-2017-15999 Cleartext Transmission of Sensitive Information vulnerability in NQ Contacts Backup & Restore 1.1
In the "NQ Contacts Backup & Restore" application 1.1 for Android, no HTTPS is used for transmitting login and synced user data.
network
low complexity
nq CWE-319
5.0
2017-10-26 CVE-2017-1232 Cleartext Transmission of Sensitive Information vulnerability in IBM Bigfix Platform 9.2/9.5
IBM Tivoli Endpoint Manager (IBM BigFix Platform 9.2 and 9.5) transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
network
ibm CWE-319
4.3
2017-10-23 CVE-2017-7147 Cleartext Transmission of Sensitive Information vulnerability in Apple Support
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-319
5.0
2017-10-23 CVE-2017-7143 Cleartext Transmission of Sensitive Information vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-319
2.1
2017-10-23 CVE-2017-7133 Cleartext Transmission of Sensitive Information vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-319
5.0
2017-10-23 CVE-2017-7078 Cleartext Transmission of Sensitive Information vulnerability in Apple Iphone OS and mac OS X
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-319
5.0
2017-10-17 CVE-2017-14009 Cleartext Transmission of Sensitive Information vulnerability in Prominent Multiflex M10A Controller Firmware
An Information Exposure issue was discovered in ProMinent MultiFLEX M10a Controller web interface.
network
low complexity
prominent CWE-319
4.0
2017-10-12 CVE-2017-15290 Cleartext Transmission of Sensitive Information vulnerability in Mirasys Video Management System
Mirasys Video Management System (VMS) 6.x before 6.4.6, 7.x before 7.5.15, and 8.x before 8.1.1 has a login process in which cleartext data is sent from a server to a client, and not all of this data is required for the client functionality.
network
low complexity
mirasys CWE-319
5.0
2017-10-05 CVE-2017-15042 Cleartext Transmission of Sensitive Information vulnerability in Golang GO
An unintended cleartext issue exists in Go before 1.8.4 and 1.9.x before 1.9.1.
network
golang CWE-319
4.3