VYPR

CWE-522

Insufficiently Protected Credentials

ClassIncomplete

Description

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-102 · CAPEC-474 · CAPEC-50 · CAPEC-509 · CAPEC-551 · CAPEC-555 · CAPEC-560 · CAPEC-561 · CAPEC-600 · CAPEC-644 · CAPEC-645 · CAPEC-652 · CAPEC-653

CVEs mapped to this weakness (1,463)

page 16 of 74
  • CVE-2026-17349CriJul 31, 2026
    risk 0.55cvss 9.6epss 0.00

    /misc/workspace/adhoc_connect_server, part of the Workspaces feature introduced in pgAdmin 4 9.0, when passed the id of an existing server, clones that server via Server.clone(), which copies every column from the source row, including user_id, shared, shared_username, and the…

  • CVE-2026-59891CriJul 14, 2026
    risk 0.55cvss 9.6epss 0.00

    sigstore-js provides JavaScript libraries for interacting with Sigstore services. Prior to 0.7.1, getRegistryCredentials() reads credentials from the Docker config file and selects an entry by checking whether any configured auth key contains the target registry string. Because…

  • CVE-2025-13478HigMar 27, 2026
    risk 0.55cvss epss 0.00

    Cache misconfiguration vulnerability in OpenText Identity Manager on Windows, Linux allows remote authenticated users to obtain another user's session data via insecure application cache handling. This issue affects Identity Manager: 25.2(v4.10.1).

  • CVE-2025-2908HigMar 28, 2025
    risk 0.55cvss epss 0.00

    The exposure of credentials in the call forwarding configuration module in MeetMe products in versions prior to 2024-09 allows an attacker to gain access to some important assets via configuration files.

  • CVE-2024-46480HigJan 13, 2025
    risk 0.55cvss 8.4epss 0.00

    An NTLM hash leak in Venki Supravizio BPM up to 18.0.1 allows authenticated attackers with Application Administrator access to escalate privileges on the underlying host system.

  • CVE-2024-43812HigOct 22, 2024
    risk 0.55cvss 8.4epss 0.00

    Kieback & Peter's DDC4000 series has an insufficiently protected credentials vulnerability, which may allow an unauthenticated attacker with access to /etc/passwd to read the password hashes of all users on the system.

  • CVE-2024-28981HigSep 12, 2024
    risk 0.55cvss 8.5epss 0.00

    Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.1.0.0 and 9.3.0.8, including 8.3.x, discloses database passwords when searching metadata injectable fields.

  • CVE-2024-20489HigSep 11, 2024
    risk 0.55cvss 8.4epss 0.00

    A vulnerability in the storage method of the PON Controller configuration file could allow an authenticated, local attacker with low privileges to obtain the MongoDB credentials. This vulnerability is due to improper storage of the unencrypted database credentials on the…

  • CVE-2024-38282HigJun 13, 2024
    risk 0.55cvss epss 0.00

    Utilizing default credentials, an attacker is able to log into the camera's operating system which could allow changes to be made to the operations or shutdown the camera requiring a physical reboot of the system.

  • CVE-2022-28651HigApr 5, 2022
    risk 0.55cvss 8.4epss 0.00

    In JetBrains IntelliJ IDEA before 2021.3.3 it was possible to get passwords from protected fields

  • CVE-2017-5700HigOct 11, 2017
    risk 0.55cvss 8.4epss 0.00

    Insufficient protection of password storage in system firmware for Intel NUC7i3BNK, NUC7i3BNH, NUC7i5BNK, NUC7i5BNH, NUC7i7BNH versions BN0049 and below allows local attackers to bypass Administrator and User passwords via access to password storage.

  • CVE-1999-0013HigJan 22, 1998
    risk 0.55cvss 8.4epss 0.01

    Stolen credentials from SSH clients via ssh-agent program, allowing other local users to access remote accounts belonging to the ssh-agent user.

  • CVE-2026-40173CriApr 15, 2026
    risk 0.54cvss 9.4epss 0.01

    Dgraph is an open source distributed GraphQL database. Versions 25.3.1 and prior contain an unauthenticated credential disclosure vulnerability where the /debug/pprof/cmdline endpoint is registered on the default mux and reachable without authentication, exposing the full…

  • CVE-2025-58366CriSep 5, 2025
    risk 0.54cvss epss 0.00

    Onyxia is a data science environment for kubernetes. In versions 4.6.0 through 4.8.0, Onyxia-API leaked the credentials of private helm repositories in the public (unauthenticated) /public/catalogs endpoint.vOnly instances using private helm repositories (i.e setting username &…

  • CVE-2025-34078HigJul 2, 2025
    risk 0.54cvss 7.8epss 0.01

    A local privilege escalation vulnerability exists in NSClient++ 0.5.2.35 when both the web interface and ExternalScripts features are enabled. The configuration file (nsclient.ini) stores the administrative password in plaintext and is readable by local users. By extracting this…

  • CVE-2020-15841HigJul 20, 2020
    risk 0.54cvss 8.3epss 0.02

    Liferay Portal before 7.3.0, and Liferay DXP 7.0 before fix pack 89, 7.1 before fix pack 17, and 7.2 before fix pack 4, does not safely test a connection to a LDAP server, which allows remote attackers to obtain the LDAP server's password via the Test LDAP Connection feature.

  • CVE-2020-5260CriApr 14, 2020
    risk 0.54cvss 9.3epss 0.10

    Affected versions of Git have a vulnerability whereby Git can be tricked into sending private credentials to a host controlled by an attacker. Git uses external "credential helper" programs to store and retrieve passwords or other credentials from secure storage provided by the…

  • CVE-2020-11560HigApr 7, 2020
    risk 0.54cvss 7.8epss 0.01

    NCH Express Invoice 7.25 allows local users to discover the cleartext password by reading the configuration file.

  • CVE-2019-0881HigMay 16, 2019
    risk 0.54cvss 7.8epss 0.03

    An elevation of privilege vulnerability exists when the Windows Kernel improperly handles key enumeration, aka 'Windows Kernel Elevation of Privilege Vulnerability'.

  • CVE-2018-10814HigSep 14, 2018
    risk 0.54cvss 7.8epss 0.01

    Synametrics SynaMan 4.0 build 1488 uses cleartext password storage for SMTP credentials.