Vulnerabilities > Improper Initialization

DATE CVE VULNERABILITY TITLE RISK
2019-03-28 CVE-2019-1761 Improper Initialization vulnerability in Cisco IOS XE
A vulnerability in the Hot Standby Router Protocol (HSRP) subsystem of Cisco IOS and IOS XE Software could allow an unauthenticated, adjacent attacker to receive potentially sensitive information from an affected device.
low complexity
cisco CWE-665
3.3
2019-03-14 CVE-2018-12204 Improper Initialization vulnerability in Intel products
Improper memory initialization in Platform Sample/Silicon Reference firmware Intel(R) Server Board, Intel(R) Server System and Intel(R) Compute Module may allow privileged user to potentially enable an escalation of privilege via local access.
local
low complexity
intel CWE-665
7.2
2019-03-08 CVE-2019-8277 Improper Initialization vulnerability in multiple products
UltraVNC revision 1211 contains multiple memory leaks (CWE-665) in VNC server code, which allows an attacker to read stack memory and can be abused for information disclosure.
network
low complexity
uvnc siemens CWE-665
5.0
2019-03-05 CVE-2019-0663 Improper Initialization vulnerability in Microsoft products
An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory.To exploit this vulnerability, an authenticated attacker could run a specially crafted application, aka 'Windows Kernel Information Disclosure Vulnerability'.
local
low complexity
microsoft CWE-665
2.1
2019-03-05 CVE-2019-6230 Improper Initialization vulnerability in Apple products
A memory initialization issue was addressed with improved memory handling.
network
apple CWE-665
6.8
2019-03-05 CVE-2019-6208 Improper Initialization vulnerability in Apple Iphone OS, mac OS X and TV OS
A memory initialization issue was addressed with improved memory handling.
network
apple CWE-665
4.3
2019-02-06 CVE-2019-3464 Improper Initialization vulnerability in multiple products
Insufficient sanitization of environment variables passed to rsync can bypass the restrictions imposed by rssh, a restricted shell that should restrict users to perform only rsync operations, resulting in the execution of arbitrary shell commands.
network
low complexity
pizzashack debian fedoraproject canonical CWE-665
critical
9.8
2018-12-19 CVE-2018-20023 Improper Initialization vulnerability in multiple products
LibVNC before 8b06f835e259652b0ff026898014fc7297ade858 contains CWE-665: Improper Initialization vulnerability in VNC Repeater client code that allows attacker to read stack memory and can be abuse for information disclosure.
network
low complexity
libvnc-project debian canonical CWE-665
5.0
2018-12-19 CVE-2018-20022 Improper Initialization vulnerability in multiple products
LibVNC before 2f5b2ad1c6c99b1ac6482c95844a84d66bb52838 contains multiple weaknesses CWE-665: Improper Initialization vulnerability in VNC client code that allows attacker to read stack memory and can be abuse for information disclosure.
network
low complexity
libvnc-project debian canonical CWE-665
5.0
2018-12-12 CVE-2018-8514 Improper Initialization vulnerability in Microsoft products
An information disclosure vulnerability exists when Remote Procedure Call runtime improperly initializes objects in memory, aka "Remote Procedure Call runtime Information Disclosure Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
local
low complexity
microsoft CWE-665
2.1