Vulnerabilities > Insecure Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2019-11-25 CVE-2019-13717 Insecure Storage of Sensitive Information vulnerability in multiple products
Incorrect security UI in full screen mode in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to hide security UI via a crafted HTML page.
network
low complexity
google opensuse CWE-922
4.3
2019-10-10 CVE-2019-4265 Insecure Storage of Sensitive Information vulnerability in IBM Maximo Anywhere
IBM Maximo Anywhere 7.6.0, 7.6.1, 7.6.2, and 7.6.3 does not have device root detection which could result in an attacker gaining sensitive information about the device.
low complexity
ibm CWE-922
2.4
2019-10-02 CVE-2019-4549 Insecure Storage of Sensitive Information vulnerability in IBM Security Directory Server 6.4.0
IBM Security Directory Server 6.4.0 discloses sensitive information to unauthorized users.
network
low complexity
ibm CWE-922
5.3
2019-10-01 CVE-2019-14957 Insecure Storage of Sensitive Information vulnerability in Jetbrains VIM
The JetBrains Vim plugin before version 0.52 was storing individual project data in the global vim_settings.xml file.
network
low complexity
jetbrains CWE-922
5.3
2019-09-27 CVE-2019-9253 Insecure Storage of Sensitive Information vulnerability in Google Android 10.0
In KeyStore, there is a possible storage of symmetric keys in the TEE instead of the strongbox due to a missing strongbox flag.
local
low complexity
google CWE-922
4.4
2019-08-22 CVE-2019-5633 Insecure Storage of Sensitive Information vulnerability in Belwith-Keeler Hickory Smart
An insecure storage of sensitive information vulnerability is present in Hickory Smart for iOS mobile devices from Belwith Products, LLC.
local
low complexity
belwith-keeler CWE-922
5.5
2019-08-22 CVE-2019-5632 Insecure Storage of Sensitive Information vulnerability in Belwith-Keeler Hickory Smart 01.01.40/01.01.43
An insecure storage of sensitive information vulnerability is present in Hickory Smart for Android mobile devices from Belwith Products, LLC.
local
low complexity
belwith-keeler CWE-922
5.5
2019-08-01 CVE-2018-20886 Insecure Storage of Sensitive Information vulnerability in Cpanel
cPanel before 74.0.0 insecurely stores phpMyAdmin session files (SEC-418).
local
low complexity
cpanel CWE-922
5.3
2019-07-17 CVE-2019-12914 Insecure Storage of Sensitive Information vulnerability in Rdbrck Shift
Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, etc.) used in the application.
network
low complexity
rdbrck CWE-922
7.5
2019-07-17 CVE-2019-12911 Insecure Storage of Sensitive Information vulnerability in Rdbrck Shift
Redbrick Shift through 3.4.3 allows an attacker to extract authentication tokens of services (such as Gmail, Outlook, etc.) used in the application.
network
low complexity
rdbrck CWE-922
7.5