CWE-312 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-312 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2011-4723The D-Link DIR-300 router stores cleartext passwords, which allows context-dependent attackers to ob…3.1%보통5.7CVE-2026-81321CM2507 IP cameras store configured wireless network credentials in cleartext within the device files…0.3%심각9.3CVE-2026-63406AnyCable is a realtime server for reliable two-way communication that supports any backend. Prior to…0.3%보통5.9CVE-2026-86280A vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination …0.2%보통5.5CVE-2026-53603nebula-mesh is a self-hosted control plane for Slack Nebula mesh VPN. Prior to version 0.3.8, Operat…0.2%높음7.1CVE-2026-90842A weakness has been identified in PHPGurukul Blood Donor Management System 1.0. Affected by this iss…0.2%낮음2.9CVE-2026-67221RabbitMQ is a messaging and streaming broker. Prior to versions 3.13.15, 4.0.20, 4.1.11, 4.2.6, and …0.2%보통5.9CVE-2026-100862heym, a workflow automation platform, stores and returns multiple capability secrets in plaintext in…0.2%보통6.9
전체 목록
22건
CVE-2026-63207Zammad is a web based open source helpdesk/customer support system. In 7.0.3 and 7.1.1, an authenticated admin…0.2%보통6.9
CVE-2026-103097An API key is hardcoded and retrievable from the application package. Since Android applications can be revers…0.2%높음7.5
CVE-2026-103096API key is hardcoded and retrievable from the application package. Since Android applications can be reverse e…0.2%높음7.5
CVE-2026-93763A protection mechanism failure in the object-document mapper's encryption configuration generation can cause f…0.2%높음7.1
CVE-2026-93764Mongoid may omit encryption rules for fields declared on embedded models when generating the client-side field…0.1%높음7.1
CVE-2026-44940The rancher-extension-stackstate extension in SUSE Observability exposes service tokens in plain configuration…0.1%보통5.7
CVE-2026-67236RabbitMQ is a messaging and streaming broker. From 4.2.0 until 4.2.8 and 4.3.2, a successful POST /login cause…0.1%높음8.2
CVE-2026-77250MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira). Prior to …0.1%보통6.1
CVE-2026-86443Cleartext storage of sensitive information in the DuoxMe application for Android, in versions prior to 4.3.4, …0.1%보통6.9
CVE-2026-96549A vulnerability has been found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. This vul…0.1%낮음1.9
CVE-2026-100581OpenClaw for iOS before 2026.8.11 stores Gateway credentials as cleartext JSON in App Group UserDefaults inste…0.1%보통6.8
CVE-2026-4130There is a storage of sensitive information in cleartext vulnerability in NI SystemLink. This vulnerability ma…0.1%높음8.4
CVE-2026-80058Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00,…0.1%보통5.5
CVE-2026-100288Cleartext storage of sensitive information in the database in Devolutions Server 2026.3.5.0 and earlier allows…0.1%높음7.2
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.