Vulnerabilities > Missing Encryption of Sensitive Data
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-06-04 | CVE-2016-10663 | Missing Encryption of Sensitive Data vulnerability in Node-Wixtoolset Project Node-Wixtoolset 1.0.0 wixtoolset is a Node module wrapper around the wixtoolset binaries wixtoolset downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. | 8.1 |
2018-06-01 | CVE-2016-10597 | Missing Encryption of Sensitive Data vulnerability in Cobalt-Cli Project Cobalt-Cli cobalt-cli downloads resources over HTTP, which leaves it vulnerable to MITM attacks. | 5.9 |
2018-05-29 | CVE-2017-16003 | Missing Encryption of Sensitive Data vulnerability in Windows-Build-Tools Project Windows-Build-Tools windows-build-tools is a module for installing C++ Build Tools for Windows using npm. | 8.1 |
2018-05-25 | CVE-2018-8864 | Missing Encryption of Sensitive Data vulnerability in Atisystem products In ATI Systems Emergency Mass Notification Systems (HPSS16, HPSS32, MHPSS, and ALERT4000) devices, a missing encryption of sensitive data vulnerability caused by specially crafted malicious radio transmissions may allow an attacker to remotely trigger false alarms. | 3.1 |
2018-05-25 | CVE-2018-6674 | Missing Encryption of Sensitive Data vulnerability in Mcafee Virusscan Enterprise 8.8.0 Privilege Escalation vulnerability in Microsoft Windows client (McTray.exe) in McAfee VirusScan Enterprise (VSE) 8.8 prior to Patch 13 allows local users to spawn unrelated processes with elevated privileges via the system administrator granting McTray.exe elevated privileges (by default it runs with the current user's privileges). | 3.9 |
2018-05-18 | CVE-2018-8849 | Missing Encryption of Sensitive Data vulnerability in Medtronic N'Vision 8840 Firmware and N'Vision 8870 Firmware Medtronic N'Vision Clinician Programmer 8840 N'Vision Clinician Programmer, all versions, and 8870 N'Vision removable Application Card, all versions does not encrypt PII and PHI while at rest. | 4.6 |
2018-05-15 | CVE-2018-10825 | Missing Encryption of Sensitive Data vulnerability in Mimobaby Mimo Baby 2 Firmware Mimo Baby 2 devices do not use authentication or encryption for the Bluetooth Low Energy (BLE) communication from a Turtle to a Lilypad, which allows attackers to inject fake information about the position and temperature of a baby via a replay or spoofing attack. | 5.3 |
2018-05-01 | CVE-2017-14012 | Missing Encryption of Sensitive Data vulnerability in Bostonscientific Zoom Latitude PRM 3120 Firmware Boston Scientific ZOOM LATITUDE PRM Model 3120 does not encrypt PHI at rest. | 4.6 |
2018-04-23 | CVE-2018-4847 | Missing Encryption of Sensitive Data vulnerability in Siemens Simatic Wincc OA Operator A vulnerability has been identified in SIMATIC WinCC OA Operator iOS App (All versions < V1.4). | 4.6 |
2018-03-28 | CVE-2018-7498 | Missing Encryption of Sensitive Data vulnerability in Philips Alice 6 Firmware R8.0.2 In Philips Alice 6 System version R8.0.2 or prior, the lack of proper data encryption passes up the guarantees of confidentiality, integrity, and accountability that properly implemented encryption conveys. | 9.8 |