Vulnerabilities > Incomplete Cleanup

DATE CVE VULNERABILITY TITLE RISK
2021-10-28 CVE-2021-22450 Incomplete Cleanup vulnerability in Huawei Harmonyos 2.0
A component of the HarmonyOS has a Incomplete Cleanup vulnerability.
local
low complexity
huawei CWE-459
5.5
2021-10-14 CVE-2021-32571 Incomplete Cleanup vulnerability in Ericsson Operations Support System-Radio and Core Firmware 18B
In OSS-RC systems of the release 18B and older during data migration procedures certain files containing usernames and passwords are left in the system undeleted but in folders accessible by top privileged accounts only.
network
low complexity
ericsson CWE-459
4.9
2021-09-17 CVE-2021-39327 Incomplete Cleanup vulnerability in Ait-Pro Bulletproof Security
The BulletProof Security WordPress plugin is vulnerable to sensitive information disclosure due to a file path disclosure in the publicly accessible ~/db_backup_log.txt file which grants attackers the full path of the site, in addition to the path of database backup files.
network
low complexity
ait-pro CWE-459
5.3
2021-08-02 CVE-2021-22428 Incomplete Cleanup vulnerability in Huawei Emui and Magic UI
There is an Incomplete Cleanup Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to authentication bypass.
network
high complexity
huawei CWE-459
8.1
2021-06-09 CVE-2020-24489 Incomplete Cleanup vulnerability in multiple products
Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel debian CWE-459
8.8
2021-04-14 CVE-2020-36322 Incomplete Cleanup vulnerability in multiple products
An issue was discovered in the FUSE filesystem implementation in the Linux kernel before 5.10.6, aka CID-5d069dbe8aaf.
local
low complexity
linux debian starwindsoftware CWE-459
5.5
2021-04-06 CVE-2021-26833 Incomplete Cleanup vulnerability in Timelybills 1.21.115/1.7.0
Cleartext Storage in a File or on Disk in TimelyBills <= 1.7.0 for iOS and versions <= 1.21.115 for Android allows attacker who can locally read user's files obtain JWT tokens for user's account due to insufficient cache clearing mechanisms.
network
high complexity
timelybills CWE-459
5.9
2021-02-17 CVE-2020-24458 Incomplete Cleanup vulnerability in Intel Killer and Proset/Wireless Wifi
Incomplete cleanup in some Intel(R) PROSet/Wireless WiFi and Killer (TM) drivers before version 22.0 may allow a privileged user to potentially enable information disclosure and denial of service<b>&nbsp;</b>via adjacent access.
low complexity
intel CWE-459
5.2
2021-01-07 CVE-2020-13451 Incomplete Cleanup vulnerability in Thecodingmachine Gotenberg
An incomplete-cleanup vulnerability in the Office rendering engine of Gotenberg through 6.2.1 allows an attacker to overwrite LibreOffice configuration files and execute arbitrary code via macros.
network
low complexity
thecodingmachine CWE-459
critical
9.8
2020-10-27 CVE-2019-8732 Incomplete Cleanup vulnerability in Apple Iphone OS
The issue was addressed with improved data deletion.
low complexity
apple CWE-459
2.4