Show filters
327 Total Results
Displaying 131-140 of 327
Sort by:
Attacker Value
Unknown

CVE-2021-37157

Disclosure Date: November 10, 2021 (last updated February 23, 2025)
An issue was discovered in OpenGamePanel OGP-Agent-Linux through 2021-08-14. $HOME/OGP/Cfg/Config.pm has the root password in cleartext.
Attacker Value
Unknown

CVE-2020-10053

Disclosure Date: November 09, 2021 (last updated February 23, 2025)
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The affected application writes sensitive data, such as database credentials in configuration files. A local attacker with access to the configuration files could use this information to launch further attacks.
Attacker Value
Unknown

CVE-2021-42370

Disclosure Date: November 08, 2021 (last updated February 23, 2025)
A password mismanagement situation exists in XoruX LPAR2RRD and STOR2RRD before 7.30 because cleartext information is present in HTML password input fields in the device properties. (Viewing the passwords requires configuring a web browser to display HTML password input fields.)
Attacker Value
Unknown

CVE-2021-25502

Disclosure Date: November 05, 2021 (last updated February 23, 2025)
A vulnerability of storing sensitive information insecurely in Property Settings prior to SMR Nov-2021 Release 1 allows attackers to read ESN value without priviledge.
Attacker Value
Unknown

CVE-2020-15935

Disclosure Date: November 02, 2021 (last updated February 23, 2025)
A cleartext storage of sensitive information in GUI in FortiADC versions 5.4.3 and below, 6.0.0 and below may allow a remote authenticated attacker to retrieve some sensitive information such as users LDAP passwords and RADIUS shared secret by deobfuscating the passwords entry fields.
Attacker Value
Unknown

CVE-2021-37842

Disclosure Date: November 02, 2021 (last updated February 23, 2025)
metakv in Couchbase Server 7.0.0 uses Cleartext for Storage of Sensitive Information. Remote Cluster XDCR credentials can get leaked in debug logs. Config key tombstone purging was added in Couchbase Server 7.0.0. This issue happens when a config key, which is being logged, has a tombstone purger time-stamp attached to it.
Attacker Value
Unknown

CVE-2021-42763

Disclosure Date: November 02, 2021 (last updated February 23, 2025)
Couchbase Server before 6.6.3 and 7.x before 7.0.2 stores Sensitive Information in Cleartext. The issue occurs when the cluster manager forwards a HTTP request from the pluggable UI (query workbench etc) to the specific service. In the backtrace, the Basic Auth Header included in the HTTP request, has the "@" user credentials of the node processing the UI request.
Attacker Value
Unknown

CVE-2021-40527

Disclosure Date: October 25, 2021 (last updated February 23, 2025)
Exposure of senstive information to an unauthorised actor in the "com.onepeloton.erlich" mobile application up to and including version 1.7.22 allows a remote attacker to access developer files stored in an AWS S3 bucket, by reading credentials stored in plain text within the mobile application.
Attacker Value
Unknown

CVE-2021-29786

Disclosure Date: October 25, 2021 (last updated February 23, 2025)
IBM Jazz Team Server products stores user credentials in clear text which can be read by an authenticated user. IBM X-Force ID: 203172.
Attacker Value
Unknown

CVE-2021-38422

Disclosure Date: October 21, 2021 (last updated February 23, 2025)
Delta Electronics DIALink versions 1.2.4.0 and prior stores sensitive information in cleartext, which may allow an attacker to have extensive access to the application directory and escalate privileges.