Skip to main content

CWE archive

CWE-921 CVEs

Programmatic archive

9 CVEs tagged with CWE-9211 Critical, 3 High, 4 Medium, 1 Low, 0 Unrated.

CVE-2025-30016

Published Apr 8, 2025

SAP Financial Consolidation allows an unauthenticated attacker to gain unauthorized access to the Admin account. The vulnerability arises due to improper authentication mechanisms…

CVSS 9.8 · Critical
evidence mentions
3
Buzz score
28.9

CVE-2025-24843

Published Feb 28, 2025

Insecure file retrieval process that facilitates potential for file manipulation to affect product stability and confidentiality, integrity, authenticity, and attestation of store…

CVSS 5.1 · Medium
evidence mentions
2
Buzz score
21.0

CVE-2024-9334

Published Feb 27, 2025

Use of Hard-coded Credentials, Storage of Sensitive Data in a Mechanism without Access Control vulnerability in E-Kent Pallium Vehicle Tracking allows Authentication Bypass. This…

CVSS 8.2 · High

CVE-2025-24870

Published Feb 11, 2025

SAP GUI for Windows & RFC service credentials are incorrectly stored in the memory of the program allowing an unauthenticated attacker to access information within systems, result…

CVSS 6.0 · Medium
evidence mentions
2
Buzz score
21.0

CVE-2024-5206

Published Jun 6, 2024

A sensitive data leakage vulnerability was identified in scikit-learn's TfidfVectorizer, specifically in versions up to and including 1.4.1.post1, which was fixed in version 1.5.0…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-41818

Published May 3, 2024

An improper use of the SD card for sensitive data vulnerability was reported in the Motorola Device Help application that could allow a local attacker to read system logs.

CVSS 5.0 · Medium

CVE-2023-2665

Published May 12, 2023

Storage of Sensitive Data in a Mechanism without Access Control in GitHub repository francoisjacquet/rosariosis prior to 11.0.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1