Vulnerabilities > Insufficiently Protected Credentials

DATE CVE VULNERABILITY TITLE RISK
2020-04-27 CVE-2020-12273 Insufficiently Protected Credentials vulnerability in Testlink 1.9.20
In TestLink 1.9.20, a crafted login.php viewer parameter exposes cleartext credentials.
network
low complexity
testlink CWE-522
7.5
2020-04-23 CVE-2019-4668 Insufficiently Protected Credentials vulnerability in IBM Urbancode Deploy
IBM UrbanCode Deploy (UCD) 7.0.4.0 stores user credentials in plain in clear text which can be read by a local user.
local
low complexity
ibm CWE-522
5.5
2020-04-22 CVE-2019-19105 Insufficiently Protected Credentials vulnerability in multiple products
The backup function in ABB Telephone Gateway TG/S 3.2 and Busch-Jaeger 6186/11 Telefon-Gateway saves the current settings and configuration of the application, including credentials of existing user accounts and other configuration's credentials in plaintext.
local
low complexity
abb busch-jaeger CWE-522
5.5
2020-04-22 CVE-2017-18777 Insufficiently Protected Credentials vulnerability in Netgear products
Certain NETGEAR devices are affected by administrative password disclosure.
local
low complexity
netgear CWE-522
7.8
2020-04-21 CVE-2020-11008 Insufficiently Protected Credentials vulnerability in multiple products
Affected versions of Git have a vulnerability whereby Git can be tricked into sending private credentials to a host controlled by an attacker.
network
low complexity
git-scm debian canonical fedoraproject CWE-522
7.5
2020-04-20 CVE-2017-18845 Insufficiently Protected Credentials vulnerability in Netgear R6700 Firmware and R6800 Firmware
Certain NETGEAR devices are affected by disclosure of administrative credentials.
local
low complexity
netgear CWE-522
7.8
2020-04-20 CVE-2017-18844 Insufficiently Protected Credentials vulnerability in Netgear D7000 Firmware, R6700 Firmware and R6800 Firmware
Certain NETGEAR devices are affected by disclosure of administrative credentials.
local
low complexity
netgear CWE-522
7.8
2020-04-20 CVE-2017-18843 Insufficiently Protected Credentials vulnerability in Netgear D7000 Firmware, R6700 Firmware and R6800 Firmware
Certain NETGEAR devices are affected by disclosure of administrative credentials.
local
low complexity
netgear CWE-522
7.8
2020-04-17 CVE-2020-9523 Insufficiently Protected Credentials vulnerability in Microfocus Enterprise Developer
Insufficiently protected credentials vulnerability on Micro Focus enterprise developer and enterprise server, affecting all version prior to 4.0 Patch Update 16, and version 5.0 Patch Update 6.
network
low complexity
microfocus CWE-522
8.8
2020-04-15 CVE-2020-5721 Insufficiently Protected Credentials vulnerability in Mikrotik Winbox
MikroTik WinBox 3.22 and below stores the user's cleartext password in the settings.cfg.viw configuration file when the Keep Password field is set and no Master Password is set.
local
low complexity
mikrotik CWE-522
5.5