CWE-256 · 212 kayıt
Plaintext Storage of a Password
Bu sınıftaki CVE’ler
212 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2017-16714İstismar yok | In Ice Qube Thermal Management Center versions prior to version 4.13, passwords are stored in plaintext in a file that is accessible withouticeqube · thermal management center firmware · CWE-256 | Kritik9,8 | — | %2,4 | 6 Eyl 2018 |
40Planlayın | CVE-2020-6961İstismar yok | In ApexPro Telemetry Server, Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC) Versions 4.Xgehealthcare · apexpro telemetry server firmware · CWE-256 | Kritik10,0 | — | %1,6 | 24 Oca 2020 |
39İzleyin | CVE-2018-7510İstismar yok | In the web application in BeaconMedaes TotalAlert Scroll Medical Air Systems running software versions prior to 4107600010.23, passwords arebeaconmedaes · scroll medical air systems firmware · CWE-256 | Kritik9,8 | — | %1,4 | 6 Haz 2018 |
39İzleyin | CVE-2018-8851İstismar yok | Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versionsechelon · smartserver 1 firmware · CWE-256 | Kritik9,8 | — | %1,3 | 24 Tem 2018 |
39İzleyin | CVE-2017-7913İstismar yok | A Plaintext Storage of a Password issue was discovered in Moxa OnCell G3110-HSPA Version 1.3 build 15082117 and previous versions, OnCell G3moxa · oncell g3110-hspa firmware · CWE-256 | Kritik9,8 | — | %1,2 | 29 May 2017 |
39İzleyin | CVE-2025-27656İstismar yok | Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Password Stored in Process List V-2printerlogic · vasion print · CWE-256 | Kritik9,8 | — | %0,9 | 5 Mar 2025 |
39İzleyin | CVE-2024-33375İstismar yok | LB-LINK BL-W1210M v2.0 was discovered to store user credentials in plaintext within the router's firmware.lb-link · bl-w1210m firmware · CWE-256 | Kritik9,8 | — | %0,6 | 14 Haz 2024 |
39İzleyin | CVE-2025-27662İstismar yok | Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Password in URL OVE-20230524-0005.printerlogic · vasion print · CWE-256 | Kritik9,8 | — | %0,6 | 5 Mar 2025 |
39İzleyin | CVE-2024-36081İstismar yok | Westermo EDW-100 devices through 2024-05-03 allow an unauthenticated user to download a configuration file containing a cleartext password.CWE-256 | Kritik9,8 | — | %0,6 | 19 May 2024 |
39İzleyin | CVE-2024-23486İstismar yok | Plaintext storage of a password issue exists in BUFFALO wireless LAN routers, which may allow a network-adjacent unauthenticated attacker wibuffalo · wsr-2533dhp firmware · CWE-256 | Kritik9,8 | — | %0,6 | 15 Nis 2024 |
39İzleyin | CVE-2025-6561İstismar yok | Hunt Electronic Hybrid DVR - Exposure of Sensitive System Informationhunt electronic · hbf-09kd · CWE-256 | Kritik9,8 | — | %0,5 | 26 Haz 2025 |
39İzleyin | CVE-2024-5960İstismar yok | Plaintext Storage of a Password in Eliz Software's Panelelizsoftware · panel · CWE-256 | Kritik9,8 | — | %0,4 | 18 Eyl 2024 |
39İzleyin | CVE-2023-26204İstismar yok | A plaintext storage of a password vulnerability [CWE-256] in FortiSIEM 6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all versionfortinet · fortisiem · CWE-256 | Kritik9,8 | — | %0,4 | 13 Haz 2023 |
39İzleyin | CVE-2023-42493İstismar yok | EisBaer Scada - CWE-256: Plaintext Storage of a Passwordbusbaer · eisbaer scada · CWE-256 | Kritik9,8 | — | %0,4 | 25 Eki 2023 |
39İzleyin | CVE-2024-55026İstismar yok | An issue in the reset_pj.cgi endpoint of Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 allows unauthorized attackers to execute arbitrarweintek · easyweb · CWE-256 | Kritik9,8 | — | %0,3 | 3 Mar 2026 |
37İzleyin | CVE-2025-6560İstismar yok | Sapido Wireless Router - Exposure of Sensitive Informationsapido · br071n · CWE-256 | Kritik9,3 | — | %0,6 | 23 Haz 2025 |
37İzleyin | CVE-2024-6118İstismar yok | Hamastar MeetingHub Paperless Meetings - Plaintext Storage of a Passwordhamastar · meetinghub paperless meetings · CWE-256 | Kritik9,3 | — | %0,5 | 5 Ağu 2024 |
37İzleyin | CVE-2025-5893İstismar yok | Honding Technology Smart Parking Management System - Exposure of Sensitive Informationhonding technology · smart parking management system · CWE-256 | Kritik9,3 | — | %0,5 | 9 Haz 2025 |
37İzleyin | CVE-2025-15113İstismar yok | Ksenia Security lares Home Automation 1.6 Remote Code Execution via MPFS Uploadkseniasecurity · lares firmware · CWE-256 | Kritik9,3 | — | %0,5 | 30 Ara 2025 |
37İzleyin | CVE-2025-15624İstismar yok | Plaintext Storage of a Password in Sparx Pro Cloud Server.sparxsystems · pro cloud server · CWE-256 | Kritik9,3 | — | %0,4 | 17 Nis 2026 |
37İzleyin | CVE-2025-34210İstismar yok | Vasion Print (formerly PrinterLogic) Readable Cleartext Passwordsvasion · virtual appliance application · CWE-256 | Kritik9,4 | — | %0,2 | 2 Eki 2025 |
36İzleyin | CVE-2024-26165İstismar yok | Visual Studio Code Elevation of Privilege Vulnerabilitymicrosoft · visual studio code · CWE-256 | Yüksek8,8 | — | %1,9 | 12 Mar 2024 |
36İzleyin | CVE-2022-36308İstismar yok | Airspan AirVelocity 1500 web management UI displays SNMP credentials in plaintext on software versions older than 15.18.00.2511, and stores airspan · airvelocity 1500 firmware · CWE-256 | Kritik9,1 | — | %0,7 | 15 Ağu 2022 |
36İzleyin | CVE-2026-46488İstismar yok | motionEye: Authentication possible via password hashmotioneye-project · motioneye · CWE-256 | Kritik9,1 | — | %0,5 | 15 Eyl 2026 |
36İzleyin | CVE-2026-35556İstismar yok | Plaintext storage of a password in OpenPLC_V3openplcproject · openplc v3 firmware · CWE-256 | Kritik9,2 | — | %0,4 | 9 Nis 2026 |
- CVE-2017-1671440Planlayın
In Ice Qube Thermal Management Center versions prior to version 4.13, passwords are stored in plaintext in a file that is accessible without
KritikCVSS 9,8İstismar yokEPSS %2iceqube · thermal management center firmware6 Eyl 2018
- CVE-2020-696140Planlayın
In ApexPro Telemetry Server, Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC) Versions 4.X
KritikCVSS 10,0İstismar yokEPSS %2gehealthcare · apexpro telemetry server firmware24 Oca 2020
- CVE-2018-751039İzleyin
In the web application in BeaconMedaes TotalAlert Scroll Medical Air Systems running software versions prior to 4107600010.23, passwords are
KritikCVSS 9,8İstismar yokEPSS %1beaconmedaes · scroll medical air systems firmware6 Haz 2018
- CVE-2018-885139İzleyin
Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versions
KritikCVSS 9,8İstismar yokEPSS %1echelon · smartserver 1 firmware24 Tem 2018
- CVE-2017-791339İzleyin
A Plaintext Storage of a Password issue was discovered in Moxa OnCell G3110-HSPA Version 1.3 build 15082117 and previous versions, OnCell G3
KritikCVSS 9,8İstismar yokEPSS %1moxa · oncell g3110-hspa firmware29 May 2017
- CVE-2025-2765639İzleyin
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.862 Application 20.0.2014 allows Password Stored in Process List V-2
KritikCVSS 9,8İstismar yokEPSS %1printerlogic · vasion print5 Mar 2025
- CVE-2024-3337539İzleyin
LB-LINK BL-W1210M v2.0 was discovered to store user credentials in plaintext within the router's firmware.
KritikCVSS 9,8İstismar yokEPSS %1lb-link · bl-w1210m firmware14 Haz 2024
- CVE-2025-2766239İzleyin
Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Password in URL OVE-20230524-0005.
KritikCVSS 9,8İstismar yokEPSS %1printerlogic · vasion print5 Mar 2025
- CVE-2024-3608139İzleyin
Westermo EDW-100 devices through 2024-05-03 allow an unauthenticated user to download a configuration file containing a cleartext password.
KritikCVSS 9,8İstismar yokEPSS %119 May 2024
- CVE-2024-2348639İzleyin
Plaintext storage of a password issue exists in BUFFALO wireless LAN routers, which may allow a network-adjacent unauthenticated attacker wi
KritikCVSS 9,8İstismar yokEPSS %1buffalo · wsr-2533dhp firmware15 Nis 2024
- CVE-2025-656139İzleyin
Hunt Electronic Hybrid DVR - Exposure of Sensitive System Information
KritikCVSS 9,8İstismar yokEPSS %1hunt electronic · hbf-09kd26 Haz 2025
- CVE-2024-596039İzleyin
Plaintext Storage of a Password in Eliz Software's Panel
KritikCVSS 9,8İstismar yokEPSS %0elizsoftware · panel18 Eyl 2024
- CVE-2023-2620439İzleyin
A plaintext storage of a password vulnerability [CWE-256] in FortiSIEM 6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all version
KritikCVSS 9,8İstismar yokEPSS %0fortinet · fortisiem13 Haz 2023
- CVE-2023-4249339İzleyin
EisBaer Scada - CWE-256: Plaintext Storage of a Password
KritikCVSS 9,8İstismar yokEPSS %0busbaer · eisbaer scada25 Eki 2023
- CVE-2024-5502639İzleyin
An issue in the reset_pj.cgi endpoint of Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 allows unauthorized attackers to execute arbitrar
KritikCVSS 9,8İstismar yokEPSS %0weintek · easyweb3 Mar 2026
- CVE-2025-656037İzleyin
Sapido Wireless Router - Exposure of Sensitive Information
KritikCVSS 9,3İstismar yokEPSS %1sapido · br071n23 Haz 2025
- CVE-2024-611837İzleyin
Hamastar MeetingHub Paperless Meetings - Plaintext Storage of a Password
KritikCVSS 9,3İstismar yokEPSS %0hamastar · meetinghub paperless meetings5 Ağu 2024
- CVE-2025-589337İzleyin
Honding Technology Smart Parking Management System - Exposure of Sensitive Information
KritikCVSS 9,3İstismar yokEPSS %0honding technology · smart parking management system9 Haz 2025
- CVE-2025-1511337İzleyin
Ksenia Security lares Home Automation 1.6 Remote Code Execution via MPFS Upload
KritikCVSS 9,3İstismar yokEPSS %0kseniasecurity · lares firmware30 Ara 2025
- CVE-2025-1562437İzleyin
Plaintext Storage of a Password in Sparx Pro Cloud Server.
KritikCVSS 9,3İstismar yokEPSS %0sparxsystems · pro cloud server17 Nis 2026
- CVE-2025-3421037İzleyin
Vasion Print (formerly PrinterLogic) Readable Cleartext Passwords
KritikCVSS 9,4İstismar yokEPSS %0vasion · virtual appliance application2 Eki 2025
- CVE-2024-2616536İzleyin
Visual Studio Code Elevation of Privilege Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %2microsoft · visual studio code12 Mar 2024
- CVE-2022-3630836İzleyin
Airspan AirVelocity 1500 web management UI displays SNMP credentials in plaintext on software versions older than 15.18.00.2511, and stores
KritikCVSS 9,1İstismar yokEPSS %1airspan · airvelocity 1500 firmware15 Ağu 2022
- CVE-2026-4648836İzleyin
motionEye: Authentication possible via password hash
KritikCVSS 9,1İstismar yokEPSS %0motioneye-project · motioneye15 Eyl 2026
- CVE-2026-3555636İzleyin
Plaintext storage of a password in OpenPLC_V3
KritikCVSS 9,2İstismar yokEPSS %0openplcproject · openplc v3 firmware9 Nis 2026