Show filters
200 Total Results
Displaying 31-40 of 200
Sort by:
Attacker Value
Unknown

CVE-2020-4980

Disclosure Date: July 15, 2021 (last updated February 23, 2025)
IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host connections is not enabled as well as data at rest. IBM X-Force ID: 192539.
Attacker Value
Unknown

CVE-2021-1896

Disclosure Date: July 13, 2021 (last updated February 23, 2025)
Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Compute, Snapdragon Connectivity
Attacker Value
Unknown

CVE-2021-36382

Disclosure Date: July 12, 2021 (last updated February 23, 2025)
Devolutions Server before 2021.1.18, and LTS before 2020.3.20, allows attackers to intercept private keys via a man-in-the-middle attack against the connections/partial endpoint (which accepts cleartext).
Attacker Value
Unknown

CVE-2021-22380

Disclosure Date: June 30, 2021 (last updated February 22, 2025)
There is a Cleartext Transmission of Sensitive Information Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affect service confidentiality and availability.
Attacker Value
Unknown

CVE-2021-34825

Disclosure Date: June 17, 2021 (last updated February 22, 2025)
Quassel through 0.13.1, when --require-ssl is enabled, launches without SSL or TLS support if a usable X.509 certificate is not found on the local system.
Attacker Value
Unknown

CVE-2021-32612

Disclosure Date: June 16, 2021 (last updated February 22, 2025)
The VeryFitPro (com.veryfit2hr.second) application 3.2.8 for Android does all communication with the backend API over cleartext HTTP. This includes logins, registrations, and password change requests. This allows information theft and account takeover via network sniffing.
Attacker Value
Unknown

CVE-2021-22325

Disclosure Date: June 03, 2021 (last updated February 22, 2025)
There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may result in video streams being intercepted during transmission.
Attacker Value
Unknown

CVE-2021-23896

Disclosure Date: June 02, 2021 (last updated February 22, 2025)
Cleartext Transmission of Sensitive Information vulnerability in the administrator interface of McAfee Database Security (DBSec) prior to 4.8.2 allows an administrator to view the unencrypted password of the McAfee Insights Server used to pass data to the Insights Server. This user is restricted to only have access to DBSec data in the Insights Server.
Attacker Value
Unknown

CVE-2021-23018

Disclosure Date: June 01, 2021 (last updated February 22, 2025)
Intra-cluster communication does not use TLS. The services within the NGINX Controller 3.x before 3.4.0 namespace are using cleartext protocols inside the cluster.
Attacker Value
Unknown

CVE-2021-23846

Disclosure Date: May 28, 2021 (last updated February 22, 2025)
When using http protocol, the user password is transmitted as a clear text parameter for which it is possible to be obtained by an attacker through a MITM attack. This will be fixed starting from Firmware version 3.11.5, which will be released on the 30th of June, 2021.