Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2019-02-15 CVE-2019-8345 Cleartext Transmission of Sensitive Information vulnerability in Estrongs ES File Explorer File Manager 4.1.9.7.4
The Help feature in the ES File Explorer File Manager application 4.1.9.7.4 for Android allows session hijacking by a Man-in-the-middle attacker on the local network because HTTPS is not used, and an attacker's web site is displayed in a WebView with no information about the URL.
high complexity
estrongs CWE-319
4.2
2019-02-09 CVE-2019-7675 Cleartext Transmission of Sensitive Information vulnerability in Mobotix S14 Firmware Mxv4.2.1.61
An issue was discovered on MOBOTIX S14 MX-V4.2.1.61 devices.
network
low complexity
mobotix CWE-319
7.5
2019-01-20 CVE-2018-18908 Cleartext Transmission of Sensitive Information vulnerability in SKY GO 1.0.191/1.0.231
The Sky Go Desktop application 1.0.19-1 through 1.0.23-1 for Windows performs several requests over cleartext HTTP.
network
high complexity
sky CWE-319
5.9
2019-01-07 CVE-2019-5489 Cleartext Transmission of Sensitive Information vulnerability in multiple products
The mincore() implementation in mm/mincore.c in the Linux kernel through 4.19.13 allowed local attackers to observe page cache access patterns of other processes on the same system, potentially allowing sniffing of secret information.
local
low complexity
linux netapp CWE-319
5.5
2018-12-06 CVE-2018-1525 Cleartext Transmission of Sensitive Information vulnerability in IBM I2 Enterprise Insight Analysis 2.1.7/2.1.8
IBM i2 Enterprise Insight Analysis 2.1.7 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
network
high complexity
ibm CWE-319
5.9
2018-11-27 CVE-2018-7960 Cleartext Transmission of Sensitive Information vulnerability in Huawei Espace 7950 Firmware V200R003C30
There is a SRTP icon display vulnerability in Huawei eSpace product.
network
high complexity
huawei CWE-319
7.4
2018-11-08 CVE-2018-19111 Cleartext Transmission of Sensitive Information vulnerability in Google Cardboard 1.2/1.8
The Google Cardboard application 1.8 for Android and 1.2 for iOS sends potentially private cleartext information to the Unity 3D Stats web site, as demonstrated by device make, model, and OS.
network
low complexity
google CWE-319
5.3
2018-10-19 CVE-2018-12674 Cleartext Transmission of Sensitive Information vulnerability in Sv3C H.264 POE IP Camera Firmware V2.3.4.2103S50Ntdb20170508B/V2.3.4.2103S50Ntdb20170823B
The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B) stores the username and password within the cookies of a session.
low complexity
sv3c CWE-319
5.7
2018-10-09 CVE-2018-18071 Cleartext Transmission of Sensitive Information vulnerability in Mercedes-Benz Mercedes ME 2.11.0
An issue was discovered in the Daimler Mercedes-Benz Me app 2.11.0-846 for iOS.
network
low complexity
mercedes-benz CWE-319
7.5
2018-10-08 CVE-2018-5401 Cleartext Transmission of Sensitive Information vulnerability in Auto-Maskin products
The Auto-Maskin DCU 210E, RP-210E, and Marine Pro Observer Android App transmit sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
network
high complexity
auto-maskin CWE-319
5.9