Vulnerabilities > Insecure Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2020-02-17 CVE-2019-12825 Insecure Storage of Sensitive Information vulnerability in Gitlab
Unauthorized Access to the Container Registry of other groups was discovered in GitLab Enterprise 12.0.0-pre.
network
low complexity
gitlab CWE-922
4.0
2020-02-10 CVE-2019-20060 Insecure Storage of Sensitive Information vulnerability in Mfscripts Yetishare
MFScripts YetiShare v3.5.2 through v4.5.4 places sensitive information in the Referer header.
network
low complexity
mfscripts CWE-922
7.5
2019-11-25 CVE-2019-13719 Insecure Storage of Sensitive Information vulnerability in multiple products
Incorrect security UI in full screen mode in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to hide security UI via a crafted HTML page.
network
low complexity
google opensuse CWE-922
4.3
2019-11-25 CVE-2019-13717 Insecure Storage of Sensitive Information vulnerability in multiple products
Incorrect security UI in full screen mode in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to hide security UI via a crafted HTML page.
network
low complexity
google opensuse CWE-922
4.3
2019-10-10 CVE-2019-4265 Insecure Storage of Sensitive Information vulnerability in IBM Maximo Anywhere
IBM Maximo Anywhere 7.6.0, 7.6.1, 7.6.2, and 7.6.3 does not have device root detection which could result in an attacker gaining sensitive information about the device.
local
low complexity
ibm CWE-922
2.1
2019-10-02 CVE-2019-4549 Insecure Storage of Sensitive Information vulnerability in IBM Security Directory Server 6.4.0
IBM Security Directory Server 6.4.0 discloses sensitive information to unauthorized users.
network
low complexity
ibm CWE-922
5.3
2019-10-01 CVE-2019-14957 Insecure Storage of Sensitive Information vulnerability in Jetbrains VIM
The JetBrains Vim plugin before version 0.52 was storing individual project data in the global vim_settings.xml file.
network
low complexity
jetbrains CWE-922
5.0
2019-09-27 CVE-2019-9253 Insecure Storage of Sensitive Information vulnerability in Google Android 10.0
In KeyStore, there is a possible storage of symmetric keys in the TEE instead of the strongbox due to a missing strongbox flag.
local
low complexity
google CWE-922
4.9
2019-08-22 CVE-2019-5633 Insecure Storage of Sensitive Information vulnerability in Belwith-Keeler Hickory Smart
An insecure storage of sensitive information vulnerability is present in Hickory Smart for iOS mobile devices from Belwith Products, LLC.
local
low complexity
belwith-keeler CWE-922
2.1
2019-08-22 CVE-2019-5632 Insecure Storage of Sensitive Information vulnerability in Belwith-Keeler Hickory Smart 01.01.40/01.01.43
An insecure storage of sensitive information vulnerability is present in Hickory Smart for Android mobile devices from Belwith Products, LLC.
local
low complexity
belwith-keeler CWE-922
2.1