CVE Vulnerabilities

CVE-2022-37785

Cleartext Storage of Sensitive Information

Published: Jan 01, 2023 | Modified: Apr 11, 2025
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An issue was discovered in WeCube Platform 3.2.2. Cleartext passwords are displayed in the configuration for terminal plugins.

Weakness

The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.

Affected Software

NameVendorStart VersionEnd Version
Wecube-platformWecube-platform_project3.2.2 (including)3.2.2 (including)

Potential Mitigations

References