CWE-255
228 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-255page 4 of 5
- CVE-2015-4684MEDIUMCVSS 6.5EG 6.52017-09-19
Multiple directory traversal vulnerabilities in Polycom RealPresence Resource Manager (aka RPRM) before 8.4 allow (1) remote authenticated users to read arbitrary files via a .. (dot dot) in the Modifier parameter to PlcmRmWeb/FileDownload…
- CVE-2016-9750MEDIUMCVSS 6.5EG 6.52017-05-15
IBM QRadar 7.2 and 7.3 stores user credentials in plain in clear text which can be read by an authenticated user. IBM X-Force ID: 120207.
- CVE-2016-6110MEDIUMCVSS 6.5EG 6.52017-02-01
IBM Tivoli Storage Manager discloses unencrypted login credentials to Vmware vCenter that could be obtained by a local user.
- CVE-2016-5950MEDIUMCVSS 6.5EG 6.52017-02-01
IBM Kenexa LCMS Premier on Cloud stores user credentials in plain in clear text which can be read by an authenticated user.
- CVE-2016-9204MEDIUMCVSS 6.5EG 6.52016-12-14
A vulnerability in the Cisco Intercloud Fabric (ICF) Director could allow an unauthenticated, remote attacker to connect to internal services with an internal account. Affected Products: Cisco Nexus 1000V InterCloud is affected. More Infor…
- CVE-2016-2311MEDIUMCVSS 6.5EG 6.52016-05-30
Black Box AlertWerks ServSensor with firmware before SP473, AlertWerks ServSensor Junior with firmware before SP473, AlertWerks ServSensor Junior with PoE with firmware before SP473, and AlertWerks ServSensor Contact with firmware before S…
- CVE-2012-0814MEDIUMCVSS 6.5EG 6.52012-01-27
The auth_parse_options function in auth-options.c in sshd in OpenSSH before 5.7 provides debug messages containing authorized_keys command options, which allows remote authenticated users to obtain potentially sensitive information by read…
- CVE-2003-1483MEDIUMCVSS v2 6.4EG 6.42003-12-31
FlashFXP 1.4 uses a weak encryption algorithm for user passwords, which allows attackers to decrypt the passwords and gain access.
- CVE-2021-28499MEDIUMCVSS 6.3EG 6.32021-09-09
In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user account passwords set in clear text could leak to users without any password. This issue affects: Arista Metamako Operating System MOS-0…
- CVE-2016-0049MEDIUMCVSS 6.2EG 6.22016-02-10
Kerberos in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, and Windows 10 Gold and 1511 does not properly validate password changes, which allows remote attacke…
- CVE-2015-8675MEDIUMCVSS 6.2EG 6.22016-01-15
Huawei S5300 Campus Series switches with software before V200R005SPH008 do not mask the password when uploading files, which allows physically proximate attackers to obtain sensitive password information by reading the display.
- CVE-2021-28509MEDIUMCVSS 6.1EG 6.12022-05-26
This advisory documents the impact of an internally found vulnerability in Arista EOS state streaming telemetry agent TerminAttr and OpenConfig transport protocols. The impact of this vulnerability is that, in certain conditions, TerminAtt…
- CVE-2016-7043MEDIUMCVSS 5.9EG 5.92019-05-15
It has been reported that KIE server and Busitess Central before version 7.21.0.Final contain username and password as plaintext Java properties. Any app deployed on the same server would have access to these properties, thus granting acce…
- CVE-2016-8962MEDIUMCVSS 5.9EG 5.92017-04-26
IBM BigFix Inventory 9.2 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 118851.
- CVE-2016-8918MEDIUMCVSS 5.9EG 5.92017-02-01
IBM Integration Bus, under non default configurations, could allow a remote user to authenticate without providing valid credentials.
- CVE-2016-8616MEDIUMCVSS 3.7EG 5.92018-08-01
A flaw was found in curl before version 7.51.0 When re-using a connection, curl was doing case insensitive comparisons of user name and password with the existing connections. This means that if an unused connection with proper credentials…
- CVE-2020-1978MEDIUMCVSS 5.8EG 5.82020-04-08
TechSupport files generated on Palo Alto Networks VM Series firewalls for Microsoft Azure platform configured with high availability (HA) inadvertently collect Azure dashboard service account credentials. These credentials are equivalent t…
- CVE-2003-1401MEDIUMCVSS v2 5.8EG 5.82003-12-31
login.php in php-Board 1.0 stores plaintext passwords in $username.txt with insufficient access control under the web document root, which allows remote attackers to obtain sensitive information via a direct request.
- CVE-2022-25327MEDIUMCVSS 5.5EG 5.52022-02-25
The PAM module for fscrypt doesn't adequately validate fscrypt metadata files, allowing users to create malicious metadata files that prevent other users from logging in. A local user can cause a denial of service by creating a fscrypt met…
- CVE-2019-4381MEDIUMCVSS 5.5EG 5.52019-06-14
IBM i 7.27.3 Clustering could allow a local attacker to obtain sensitive information, caused by the use of advanced node failure detection using the REST API to interface with the HMC. An attacker could exploit this vulnerability to obtain…
- CVE-2016-8967MEDIUMCVSS 5.5EG 5.52017-02-01
IBM BigFix Inventory v9 9.2 stores user credentials in plain in clear text which can be read by a local user.
- CVE-2004-2696MEDIUMCVSS v2 5.5EG 5.52004-12-31
BEA WebLogic Server and WebLogic Express 6.1, 7.0, and 8.1, when using Remote Method Invocation (RMI) over Internet Inter-ORB Protocol (IIOP), does not properly handle when multiple logins for different users coming from the same client, w…
- CVE-2016-1307MEDIUMCVSS 5.4EG 5.42016-02-07
The Openfire server in Cisco Finesse Desktop 10.5(1) and 11.0(1) and Unified Contact Center Express 10.6(1) has a hardcoded account, which makes it easier for remote attackers to obtain access via an XMPP session, aka Bug ID CSCuw79085.
- CVE-2026-11552MEDIUMCVSS 5.3EG 5.32026-06-08
A vulnerability has been found in SourceCodester Onlne Examination & Learning Management System and Syllabus-aligned Learning Management and Examination System 1.0. Affected by this issue is some unknown functionality of the file import_us…
- CVE-2026-11515MEDIUMCVSS 5.3EG 5.32026-06-08
A vulnerability has been found in SourceCodester Barangay Resident Profiling and Information Management System 1.0. The impacted element is an unknown function of the file passsword_reset.php of the component Password Reset Handler. Such m…
- CVE-2025-15128MEDIUMCVSS 5.3EG 5.32025-12-28
A vulnerability was detected in ZKTeco BioTime up to 9.0.3/9.0.4/9.5.2. This affects an unknown part of the file /base/safe_setting/ of the component Endpoint. Performing a manipulation of the argument backup_encryption_password_decrypt/ex…
- CVE-2025-13221MEDIUMCVSS 5.3EG 5.32025-11-15
A weakness has been identified in Intelbras UnniTI 24.07.11. The affected element is an unknown function of the file /xml/sistema/usuarios.xml. Executing manipulation of the argument Usuario/Senha can lead to unprotected storage of credent…
- CVE-2016-10791MEDIUMCVSS 5.3EG 5.32019-08-06
cPanel before 60.0.15 does not ensure that system accounts lack a valid password, so that logins are impossible (CPANEL-9559).
- CVE-2016-9355MEDIUMCVSS 5.3EG 5.32017-02-13
An issue was discovered in Becton, Dickinson and Company (BD) Alaris 8015 Point of Care (PC) unit, Version 9.5 and prior versions, and Version 9.7. An unauthorized user with physical access to an Alaris 8015 PC unit may be able to obtain u…
- CVE-2016-5890MEDIUMCVSS 5.3EG 5.32016-11-30
IBM Sterling B2B Integrator 5.2 before 5020500_14 and 5.2 06 before 5020602_1 allows remote authenticated users to change arbitrary passwords via unspecified vectors.
- CVE-2016-2283MEDIUMCVSS 5.3EG 5.32016-03-04
Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt data, which makes it easier for remote attackers to obtain the associated cleartext via unspecified vectors.
- CVE-2016-2282MEDIUMCVSS 5.3EG 5.32016-03-04
Moxa ioLogik E2200 devices before 3.12 and ioAdmin Configuration Utility before 3.18 do not properly encrypt credentials, which makes it easier for remote attackers to obtain the associated cleartext via unspecified vectors.
- CVE-2015-8945MEDIUMCVSS 5.1EG 5.12016-08-05
openshift-node in OpenShift Origin 1.1.6 and earlier improperly stores router credentials as envvars in the pod when the --credentials option is used, which allows local users to obtain sensitive private key information by reading the syst…
- CVE-2004-2708MEDIUMCVSS v2 5.0EG 5.02004-12-31
Gyach Enhanced (Gyach-E) before 1.0.0 stores passwords in plaintext, which allows attackers to obtain user passwords by reading the configuration file.
- CVE-2003-1394MEDIUMCVSS v2 5.0EG 5.02003-12-31
CoffeeCup Software Password Wizard 4.0 stores sensitive information such as usernames and passwords in a .apw file under the web document root with insufficient access control, which allows remote attackers to obtain that information via a…
- CVE-2002-2310MEDIUMCVSS v2 5.0EG 5.02002-12-31
ClickCartPro 4.0 stores the admin_user.db data file under the web document root with insufficient access control on servers other than Apache, which allows remote attackers to obtain usernames and passwords.
- CVE-2002-2389MEDIUMCVSS v2 5.0EG 5.02002-12-31
TheServer 1.74 web server stores server.ini under the web document root with insufficient access control, which allows remote attackers to obtain cleartext passwords and gain access to server log files.
- CVE-1999-0994MEDIUMCVSS v2 5.0EG 5.01999-12-16
Windows NT with SYSKEY reuses the keystream that is used for encrypting SAM password hashes, allowing an attacker to crack passwords.
- CVE-1999-0755MEDIUMCVSS v2 5.0EG 5.01999-05-27
Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option.
- CVE-2016-8375MEDIUMCVSS 4.9EG 4.92017-02-13
An issue was discovered in Becton, Dickinson and Company (BD) Alaris 8015 Point of Care (PC) unit, Version 9.5 and prior versions, and Version 9.7, and 8000 PC unit. An unauthorized user with physical access to an affected Alaris PC unit m…
- CVE-2016-3685MEDIUMCVSS 4.7EG 4.72016-12-14
SAP Download Manager 2.1.142 and earlier generates an encryption key from a small key space on Windows and Mac systems, which allows context-dependent attackers to obtain sensitive configuration information by leveraging knowledge of a har…
- CVE-2015-4400MEDIUMCVSS 4.6EG 4.62018-02-06
Ring (formerly DoorBot) video doorbells allow remote attackers to obtain sensitive information about the wireless network configuration by pressing the set up button and leveraging an API in the GainSpan Wi-Fi module.
- CVE-2004-1366MEDIUMCVSS v2 4.6EG 4.62004-08-04
Oracle 10g Database Server stores the password for the SYSMAN account in cleartext in the world-readable emoms.properties file, which could allow local users to gain DBA privileges.
- CVE-2003-1376MEDIUMCVSS v2 4.6EG 4.62003-12-31
WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys and extract the data from the zip file by guessing the state of the stream coder.
- CVE-2003-1482MEDIUMCVSS v2 4.6EG 4.62003-12-31
The backup configuration file for Microsoft MN-500 wireless base station stores administrative passwords in plaintext, which allows local users to gain access.
- CVE-2015-7462MEDIUMCVSS 4.4EG 4.42016-06-19
IBM WebSphere MQ 8.0.0.4 on IBM i platforms allows local users to discover cleartext certificate-keystore passwords within MQ trace output by leveraging administrator privileges to execute the mqcertck program.
- CVE-2003-1417MEDIUMCVSS v2 4.4EG 4.42003-12-31
nCipher Support Software 6.00, when using generatekey KeySafe to import keys, does not delete the temporary copies of the key, which may allow local users to gain access to the key by reading the (1) key.pem or (2) key.der files.
- CVE-2025-14183MEDIUMCVSS 4.3EG 4.32025-12-07
A vulnerability was found in SGAI Space1 NAS N1211DS up to 1.0.915. This issue affects the function GET_FACTORY_INFO/GET_USER_INFO of the file /cgi-bin/JSONAPI of the component gsaiagent. The manipulation results in unprotected storage of …
- CVE-2021-1522MEDIUMCVSS 4.3EG 4.32021-08-04
A vulnerability in the change password API of Cisco Connected Mobile Experiences (CMX) could allow an authenticated, remote attacker to alter their own password to a value that does not comply with the strong authentication requirements th…
- CVE-2003-1439MEDIUMCVSS v2 4.3EG 4.32003-12-31
Secure Internet Live Conferencing (SILC) 0.9.11 and 0.9.12 stores passwords and sessions in plaintext in memory, which could allow local users to obtain sensitive information.
Map vulnerabilities like CWE-255 to your infrastructure
EchelonGraph correlates every CVE — across CWE-255 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →