Vulnerabilities > Cleartext Transmission of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2023-09-27 CVE-2023-43125 Cleartext Transmission of Sensitive Information vulnerability in F5 products
BIG-IP APM clients may send IP traffic outside of the VPN tunnel.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
network
low complexity
f5 CWE-319
8.2
2023-09-20 CVE-2023-42147 Cleartext Transmission of Sensitive Information vulnerability in Fit2Cloud Cloudexplorer Lite 1.3.1
An issue in CloudExplorer Lite 1.3.1 allows an attacker to obtain sensitive information via the login key component.
network
low complexity
fit2cloud CWE-319
7.5
2023-09-20 CVE-2022-47560 Cleartext Transmission of Sensitive Information vulnerability in Ormazabal Ekorccp Firmware and Ekorrci Firmware
The lack of web request control on ekorCCP and ekorRCI devices allows a potential attacker to create custom requests to execute malicious actions when a user is logged in.
network
low complexity
ormazabal CWE-319
6.5
2023-09-15 CVE-2022-3261 Cleartext Transmission of Sensitive Information vulnerability in Redhat Openstack Platform 16.2
A flaw was found in OpenStack.
network
low complexity
redhat CWE-319
7.5
2023-09-12 CVE-2023-4918 Cleartext Transmission of Sensitive Information vulnerability in Redhat Keycloak 22.0.2
A flaw was found in the Keycloak package, more specifically org.keycloak.userprofile.
network
low complexity
redhat CWE-319
8.8
2023-09-12 CVE-2023-40729 Cleartext Transmission of Sensitive Information vulnerability in Siemens QMS Automotive 12.30
A vulnerability has been identified in QMS Automotive (All versions < V12.39).
network
high complexity
siemens CWE-319
7.4
2023-09-05 CVE-2023-22870 Cleartext Transmission of Sensitive Information vulnerability in IBM Aspera Faspex
IBM Aspera Faspex 5.0.5 transmits sensitive information in cleartext which could be obtained by an attacker using man in the middle techniques.
network
high complexity
ibm CWE-319
5.9
2023-08-25 CVE-2023-25848 Cleartext Transmission of Sensitive Information vulnerability in Esri Arcgis Server 10.8.1/10.9.0/10.9.1
ArcGIS Enterprise Server versions 11.0 and below have an information disclosure vulnerability where a remote, unauthorized attacker may submit a crafted query that may result in a low severity information disclosure issue.
network
low complexity
esri CWE-319
5.3
2023-08-24 CVE-2023-34972 Cleartext Transmission of Sensitive Information vulnerability in Qnap QTS and Quts Hero
A cleartext transmission of sensitive information vulnerability has been reported to affect QNAP operating systems.
low complexity
qnap CWE-319
6.5
2023-08-09 CVE-2023-36671 Cleartext Transmission of Sensitive Information vulnerability in Clario VPN 5.9.1.1662
An issue was discovered in the Clario VPN client through 5.9.1.1662 for macOS.
local
high complexity
clario CWE-319
6.3