Vulnerabilities (CVE)

Filtered by CWE-316
Total 23 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-40724 1 Siemens 1 Qms Automotive 2024-11-21 N/A 7.3 HIGH
A vulnerability has been identified in QMS Automotive (All versions < V12.39). User credentials are found in memory as plaintext. An attacker could perform a memory dump, and get access to credentials, and use it for impersonation.
CVE-2021-31989 1 Axis 1 Device Manager 2024-11-21 3.5 LOW 5.3 MEDIUM
A user with permission to log on to the machine hosting the AXIS Device Manager client could under certain conditions extract a memory dump from the built-in Windows Task Manager application. The memory dump may potentially contain credentials of connected Axis devices.
CVE-2024-35282 1 Fortinet 1 Forticlient 2024-09-20 N/A 4.6 MEDIUM
A cleartext storage of sensitive information in memory vulnerability [CWE-316] affecting FortiClient VPN iOS 7.2 all versions, 7.0 all versions, 6.4 all versions, 6.2 all versions, 6.0 all versions may allow an unauthenticated attacker that has physical access to a jailbroken device to obtain cleartext passwords via keychain dump.