Vulnerabilities > Insecure Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2024-04-19 CVE-2024-29968 Insecure Storage of Sensitive Information vulnerability in Broadcom Brocade Sannav
An information disclosure vulnerability exists in Brocade SANnav before v2.3.1 and v2.3.0a when Brocade SANnav instances are configured in disaster recovery mode.
network
low complexity
broadcom CWE-922
6.5
2024-04-19 CVE-2024-29965 Insecure Storage of Sensitive Information vulnerability in Broadcom Brocade Sannav
In Brocade SANnav before v2.3.1, and v2.3.0a, it is possible to back up the appliance from the web interface or the command line interface ("SSH").
local
low complexity
broadcom CWE-922
5.9
2024-04-10 CVE-2024-31278 Insecure Storage of Sensitive Information vulnerability in Leap13 Premium Addons for Elementor
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Leap13 Premium Addons for Elementor.This issue affects Premium Addons for Elementor: from n/a through 4.10.22.
network
low complexity
leap13 CWE-922
6.5
2024-03-04 CVE-2024-21826 Insecure Storage of Sensitive Information vulnerability in Openatom Openharmony
in OpenHarmony v3.2.4 and prior versions allow a local attacker cause sensitive information leak through insecure storage.
local
low complexity
openatom CWE-922
5.5
2024-02-21 CVE-2023-42823 Insecure Storage of Sensitive Information vulnerability in Apple products
The issue was resolved by sanitizing logging This issue is fixed in watchOS 10.1, macOS Sonoma 14.1, tvOS 17.1, macOS Monterey 12.7.1, iOS 16.7.2 and iPadOS 16.7.2, iOS 17.1 and iPadOS 17.1, macOS Ventura 13.6.1.
local
low complexity
apple CWE-922
5.5
2024-02-21 CVE-2023-42839 Insecure Storage of Sensitive Information vulnerability in Apple products
This issue was addressed with improved state management.
local
low complexity
apple CWE-922
5.5
2024-02-06 CVE-2024-22773 Insecure Storage of Sensitive Information vulnerability in Intelbras Action RF 1200 Firmware 1.2.2
Intelbras Action RF 1200 routers 1.2.2 and earlier and Action RG 1200 routers 2.1.7 and earlier expose the Password in Cookie resulting in Login Bypass.
network
high complexity
intelbras CWE-922
8.1
2024-01-03 CVE-2023-5879 Insecure Storage of Sensitive Information vulnerability in Geniecompany Aladdin Connect 5.65
Users’ product account authentication data was stored in clear text in The Genie Company Aladdin Connect Mobile Application Version 5.65 Build 2075 (and below) on Android Devices.
low complexity
geniecompany CWE-922
6.8
2023-12-14 CVE-2023-45184 Insecure Storage of Sensitive Information vulnerability in IBM I Access Client Solutions
IBM i Access Client Solutions 1.1.2 through 1.1.4 and 1.1.4.3 through 1.1.9.3 could allow an attacker to obtain a decryption key due to improper authority checks.
network
low complexity
ibm CWE-922
7.5
2023-11-22 CVE-2023-6253 Insecure Storage of Sensitive Information vulnerability in Fortra Digital Guardian Agent
A saved encryption key in the Uninstaller in Digital Guardian's Agent before version 7.9.4 allows a local attacker to retrieve the uninstall key and remove the software by extracting the uninstaller key from the memory of the uninstaller file.
local
low complexity
fortra CWE-922
6.0