Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-319 (敏感数据的明文传输) — Vulnerability Class 351

351 vulnerabilities classified as CWE-319 (敏感数据的明文传输). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2022-41327 Fortinet FortiOS 安全漏洞 — FortiOS 7.6 High2023-06-13
CVE-2023-27861 IBM Maximo Application Suite information disclosure — Maximo Application Suite 5.9 Medium2023-06-05
CVE-2023-30602 Hitron Technologies Inc. CODA-5310 - Insecure service Telnet — Hitron CODA-5310 7.5 High2023-06-02
CVE-2023-3028 Improper backend communication allows access and manipulation of the telemetry data — HQT401 8.6 High2023-06-01
CVE-2023-33187 highlight vulnerable to cleartext transmission of sensitive information — highlight 5.4 Medium2023-05-26
CVE-2023-31193 Snap One OvrC Pro 安全漏洞 — OvrC Cloud 7.5 High2023-05-22
CVE-2022-46680 Schneider Electric PowerLogic 安全漏洞 — PowerLogic ION9000 8.8 High2023-05-22
CVE-2023-0864 Configuration data is exchanged in plaintext and could be available to a nearby attacker if present during configuration or usage of the device via Bluetooth Low Energy (BLE). — Terra AC wallbox (UL40/80A) 7.1 High2023-05-17
CVE-2023-1802 In Docker Desktop 4.17.x the Artifactory Integration falls back to sending registry credentials over plain HTTP if the HTTPS health check has failed — Docker Desktop 5.9 Medium2023-04-06
CVE-2023-0922 samba 安全漏洞 — Samba 7.4 -2023-04-03
CVE-2023-1656 When the LDAP connector is started with StartTLS configured, LDAP BIND credentials are transmitted insecurely, prior to establishing the TLS connection. — OpenIDM and Java Remote Connector Server (RCS) 7.5 High2023-03-29
CVE-2023-0053 SAUTER Controls Nova 200–220 Series Cleartext Transmission of Sensitive Information — Nova 220 (EYK220F001) DDC with BACnet connection 7.5 High2023-03-02
CVE-2023-23914 curl 安全漏洞 — https://github.com/curl/curl 9.1 -2023-02-23
CVE-2023-23915 curl 安全漏洞 — https://github.com/curl/curl 8.2 -2023-02-23
CVE-2023-22806 CVE-2023-22806 — XBC-DN32U 7.5 High2023-02-15
CVE-2023-0001 Cortex XDR Agent: Cleartext Exposure of Agent Admin Password — Cortex XDR agent 6.0 Medium2023-02-08
CVE-2022-40693 MOXA SDS-3008 安全漏洞 — SDS-3008 Series Industrial Ethernet Switch 7.5 -2023-02-07
CVE-2023-22863 IBM Robotic Process Automation information disclosure — Robotic Process Automation 5.9 Medium2023-01-18
CVE-2023-22597 InHand Networks InRouter302 安全漏洞 — InRouter 302 6.5 Medium2023-01-12
CVE-2022-3929 Communication between the client and server partially using CORBA over TCP/IP — FOXMAN-UN 8.3 High2023-01-05
CVE-2022-43551 curl 安全漏洞 — https://github.com/curl/curl 7.5 -2022-12-23
CVE-2022-22457 IBM Security Verify Governance, Identity Manager information disclosure — Security Verify Governance, Identity Manager 5.3 Medium2022-12-22
CVE-2022-47895 JetBrains IntelliJ IDEA 安全漏洞 — IntelliJ IDEA 4.7 Medium2022-12-22
CVE-2020-4497 IBM Spectrum Protect Plus information disclosure — Spectrum Protect Plus 6.8 Medium2022-12-14
CVE-2022-43724 Siemens SICAM PAS/PQS 安全漏洞 — SICAM PAS/PQS 9.8 -2022-12-13
CVE-2022-45478 Telepad 安全漏洞 — Telepad 5.9 -2022-12-05
CVE-2022-45480 BEApps Mobile PC Keyboard 安全漏洞 — PC Keyboard WiFi & Bluetooth 5.3 -2022-12-02
CVE-2022-45483 thisAAY Lazy Mouse 安全漏洞 — Lazy Mouse 5.9 -2022-12-02
CVE-2022-39339 Cleartext Transmission of Sensitive Information in user_oidc — security-advisories 4.3 Medium2022-11-25
CVE-2021-35246 Unprotected Transport of Credentials (HSTS) Vulnerability — Engineer's Toolset 5.3 Medium2022-11-23

Vulnerabilities classified as CWE-319 (敏感数据的明文传输) represent 351 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.