Vulnerabilities > Insecure Storage of Sensitive Information

DATE CVE VULNERABILITY TITLE RISK
2021-02-03 CVE-2021-25776 Insecure Storage of Sensitive Information vulnerability in Jetbrains Teamcity
In JetBrains TeamCity before 2020.2, an ECR token could be exposed in a build's parameters.
network
low complexity
jetbrains CWE-922
7.5
2021-01-29 CVE-2020-29603 Insecure Storage of Sensitive Information vulnerability in Mantisbt
In manage_proj_edit_page.php in MantisBT before 2.24.4, any unprivileged logged-in user can retrieve Private Projects' names via the manage_proj_edit_page.php project_id parameter, without having access to them.
network
low complexity
mantisbt CWE-922
4.3
2021-01-19 CVE-2020-4871 Insecure Storage of Sensitive Information vulnerability in IBM Planning Analytics 2.0
IBM Planning Analytics 2.0 allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-922
5.5
2021-01-12 CVE-2020-4674 Insecure Storage of Sensitive Information vulnerability in IBM Workload Automation 9.5
IBM Workload Automation 9.5 stores the server path in URLs that could aid in further attacks against the system.
network
low complexity
ibm CWE-922
4.3
2021-01-12 CVE-2020-4673 Insecure Storage of Sensitive Information vulnerability in IBM Workload Automation 9.5
IBM Workload Automation 9.5 stores sensitive information in HTML comments that could aid in further attacks against the system.
network
low complexity
ibm CWE-922
4.3
2020-12-24 CVE-2020-9202 Insecure Storage of Sensitive Information vulnerability in Huawei TE Mobile V600R006C10/V600R006C10Spc100
There is an information disclosure vulnerability in TE Mobile software versions V600R006C10,V600R006C10SPC100.
local
low complexity
huawei CWE-922
4.4
2020-12-18 CVE-2020-26176 Insecure Storage of Sensitive Information vulnerability in Tangro Business Workflow 1.17.5
An issue was discovered in tangro Business Workflow before 1.18.1.
network
low complexity
tangro CWE-922
4.3
2020-12-16 CVE-2020-4906 Insecure Storage of Sensitive Information vulnerability in IBM Financial Transaction Manager for Multiplatform 3.2.4
IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4 allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-922
3.3
2020-11-16 CVE-2019-19561 Insecure Storage of Sensitive Information vulnerability in Harman Hermes 1.5
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1.5 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
low complexity
harman CWE-922
2.4
2020-11-16 CVE-2019-19557 Insecure Storage of Sensitive Information vulnerability in Harman Hermes 1.0
A misconfiguration in the debug interface in Mercedes-Benz HERMES 1 allows an attacker with direct physical access to device hardware to obtain cellular modem information.
low complexity
harman CWE-922
2.4