I'm pretty sure btc-e doesn't have your password in cleartext, only hash of it. So even if someone can look at internal btc-e database, he can't deduce your password.
And their's SSL is standard, otherwise your browser would complain. I just checked, it's TLS 1.2