Vulnerabilities > Insecure Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-09-10 CVE-2021-28813 Insecure Storage of Sensitive Information vulnerability in Qnap Qsw-M2116P-2T2S Firmware and Qunetswitch
A vulnerability involving insecure storage of sensitive information has been reported to affect QSW-M2116P-2T2S and QNAP switches running QuNetSwitch.
network
low complexity
qnap CWE-922
5.0
2021-08-17 CVE-2021-0639 Insecure Storage of Sensitive Information vulnerability in Google Android
In multiple functions of libl3oemcrypto.cpp, there is a possible weakness in the existing obfuscation mechanism due to the way sensitive data is handled.
local
low complexity
google CWE-922
2.1
2021-08-13 CVE-2021-36786 Insecure Storage of Sensitive Information vulnerability in Miniorange Saml
The miniorange_saml (aka Miniorange Saml) extension before 1.4.3 for TYPO3 allows Sensitive Data Exposure of API credentials and private keys.
network
low complexity
miniorange CWE-922
5.0
2021-07-02 CVE-2021-36127 Insecure Storage of Sensitive Information vulnerability in Mediawiki
An issue was discovered in the CentralAuth extension in MediaWiki through 1.36.
network
low complexity
mediawiki CWE-922
4.0
2021-06-16 CVE-2021-22914 Insecure Storage of Sensitive Information vulnerability in Citrix Cloud Connector
Citrix Cloud Connector before 6.31.0.62192 suffers from insecure storage of sensitive information due to sensitive information being stored in the Citrix Cloud Connector installation log files.
network
low complexity
citrix CWE-922
5.0
2021-06-16 CVE-2021-28815 Insecure Storage of Sensitive Information vulnerability in Qnap Myqnapcloud Link
Insecure storage of sensitive information has been reported to affect QNAP NAS running myQNAPcloud Link.
network
low complexity
qnap CWE-922
4.0
2021-06-11 CVE-2021-20396 Insecure Storage of Sensitive Information vulnerability in IBM Security Qradar Analyst Workflow
IBM QRadar Analyst Workflow App 1.0 through 1.18.0 for IBM QRadar SIEM allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-922
2.1
2021-06-11 CVE-2021-25402 Insecure Storage of Sensitive Information vulnerability in Samsung Notes 2.0.02.31/4.2.00.22
Information Exposure vulnerability in Samsung Notes prior to version 4.2.04.27 allows attacker to access s pen latency information.
local
low complexity
samsung CWE-922
2.1
2021-06-11 CVE-2021-25404 Insecure Storage of Sensitive Information vulnerability in Samsung Smartthings Firmware
Information Exposure vulnerability in SmartThings prior to version 1.7.64.21 allows attacker to access user information via log.
local
low complexity
samsung CWE-922
2.1
2021-06-07 CVE-2020-5008 Insecure Storage of Sensitive Information vulnerability in IBM Datapower Gateway
IBM DataPower Gateway 10.0.0.0 through 10.0.1.0 and 2018.4.1.0 through 2018.4.1.14 stores sensitive information in GET request parameters.
network
low complexity
ibm CWE-922
5.0