VYPR

CWE-522

Insufficiently Protected Credentials

ClassIncomplete

Description

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-102 · CAPEC-474 · CAPEC-50 · CAPEC-509 · CAPEC-551 · CAPEC-555 · CAPEC-560 · CAPEC-561 · CAPEC-600 · CAPEC-644 · CAPEC-645 · CAPEC-652 · CAPEC-653

CVEs mapped to this weakness (1,463)

page 59 of 74
  • CVE-2025-62327MedJan 7, 2026
    risk 0.32cvss 4.9epss 0.00

    In HCL DevOps Deploy 8.1.2.0 through 8.1.2.3, a user with LLM configuration privileges may be able to recover a credential previously saved for performing authenticated LLM Queries.

  • CVE-2025-13164MedNov 17, 2025
    risk 0.32cvss 4.9epss 0.00

    EasyFlow GP developed by Digiwin has an Insufficiently Protected Credentials vulnerability, allowing privileged remote attackers to obtain plaintext credentials of AD and system mail from the system frontend.

  • CVE-2025-13163MedNov 17, 2025
    risk 0.32cvss 4.9epss 0.00

    EasyFlow GP developed by Digiwin has an Insufficiently Protected Credentials vulnerability, allowing privileged remote attackers to obtain plaintext database account credentials from the system frontend.

  • CVE-2025-34270MedOct 30, 2025
    risk 0.32cvss 4.9epss 0.01

    Nagios Log Server versions prior to 2024R2.0.2 contain a vulnerability in the AD/LDAP user import functionality as it fails to obfuscate the password field during import. As a result, the plaintext password supplied for imported accounts may be exposed in the user interface,…

  • CVE-2025-27231MedOct 3, 2025
    risk 0.32cvss 4.9epss 0.00

    The LDAP 'Bind password' value cannot be read after saving, but a Super Admin account can leak it by changing LDAP 'Host' to a rogue LDAP server. To mitigate this, the 'Bind password' value is now reset on 'Host' change.

  • CVE-2025-0619MedJan 23, 2025
    risk 0.32cvss 4.9epss 0.00

    Unsafe password recovery from configuration in M-Files Server before 25.1 allows a highly privileged user to recover external connector passwords

  • CVE-2024-34887MedNov 4, 2024
    risk 0.32cvss 4.9epss 0.00

    Insufficiently protected credentials in AD/LDAP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send AD/LDAP administrators account passwords to an arbitrary server via HTTP POST request.

  • CVE-2024-34883MedNov 4, 2024
    risk 0.32cvss 4.9epss 0.00

    Insufficiently protected credentials in DAV server settings in 1C-Bitrix Bitrix24 23.300.100 allow remote administrators to read proxy-server accounts passwords via HTTP GET request.

  • CVE-2024-34882MedNov 4, 2024
    risk 0.32cvss 4.9epss 0.00

    Insufficiently protected credentials in SMTP server settings in 1C-Bitrix Bitrix24 23.300.100 allows remote administrators to send SMTP account passwords to an arbitrary server via HTTP POST request.

  • CVE-2023-50310MedOct 23, 2024
    risk 0.32cvss 4.9epss 0.00

    IBM CICS Transaction Gateway for Multiplatforms 9.2 and 9.3 transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval.

  • CVE-2024-40704MedAug 15, 2024
    risk 0.32cvss 4.9epss 0.01

    IBM InfoSphere Information Server 11.7 could allow a privileged user to obtain sensitive information from authentication request headers. IBM X-Force ID: 298277.

  • CVE-2023-42955MedMay 14, 2024
    risk 0.32cvss 4.9epss 0.00

    Claris International has successfully resolved an issue of potentially exposing password information to front-end websites when signed in to the Admin Console with an administrator role. This issue has been fixed in FileMaker Server 20.3.1 by eliminating the send of Admin Role…

  • CVE-2022-38714MedFeb 12, 2024
    risk 0.32cvss 4.9epss 0.01

    IBM DataStage on Cloud Pak for Data 4.0.6 to 4.5.2 stores sensitive credential information that can be read by a privileged user. IBM X-Force ID: 235060.

  • CVE-2023-6791MedDec 13, 2023
    risk 0.32cvss 4.9epss 0.01

    A credential disclosure vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-only administrator to obtain the plaintext credentials of stored external system integrations such as LDAP, SCP, RADIUS, TACACS+, and SNMP from the web interface.

  • CVE-2023-38328MedOct 26, 2023
    risk 0.32cvss 4.9epss 0.01

    An issue was discovered in eGroupWare 17.1.20190111. An Improper Password Storage vulnerability affects the setup panel of under setup/manageheader.php, which allows authenticated remote attackers with administrator credentials to read a cleartext database password.

  • CVE-2023-25495MedApr 28, 2023
    risk 0.32cvss 4.9epss 0.01

    A valid, authenticated administrative user can query a web interface API to reveal the configured LDAP client password used by XCC to authenticate to an external LDAP server in certain configurations. There is no exposure where no LDAP client password is configured

  • CVE-2023-30776MedApr 24, 2023
    risk 0.32cvss 4.9epss 0.02

    An authenticated user with specific data permissions could access database connections stored passwords by requesting a specific REST API. This issue affects Apache Superset version 1.3.0 up to 2.0.1.

  • CVE-2022-42445MedDec 12, 2022
    risk 0.32cvss 4.9epss 0.01

    HCL Launch could allow a user with administrative privileges, including "Manage Security" permissions, the ability to recover a credential previously saved for performing authenticated LDAP searches.

  • CVE-2022-40751MedNov 17, 2022
    risk 0.32cvss 4.9epss 0.01

    IBM UrbanCode Deploy (UCD) 6.2.7.0 through 6.2.7.17, 7.0.0.0 through 7.0.5.12, 7.1.0.0 through 7.1.2.8, and 7.2.0.0 through 7.2.3.1 could allow a user with administrative privileges including "Manage Security" permissions may be able to recover a credential previously saved for…

  • CVE-2022-36617MedSep 9, 2022
    risk 0.32cvss 4.9epss 0.00

    Arq Backup 7.19.5.0 and below stores backup encryption passwords using reversible encryption. This issue allows attackers with administrative privileges to recover cleartext passwords.