Vulnerabilities > Incomplete Cleanup

DATE CVE VULNERABILITY TITLE RISK
2019-12-18 CVE-2019-8548 Incomplete Cleanup vulnerability in Apple Watchos
An issue existed where partially entered passcodes may not clear when the device went to sleep.
low complexity
apple CWE-459
2.4
2019-12-16 CVE-2019-18191 Incomplete Cleanup vulnerability in Trendmicro Deep Security AS a Service
A privilege escalation vulnerability in the Trend Micro Deep Security as a Service Quick Setup cloud formation template could allow an authenticated entity with certain unrestricted AWS execution privileges to escalate to full privileges within the target AWS account.
network
low complexity
trendmicro CWE-459
8.8
2019-10-10 CVE-2019-17420 Incomplete Cleanup vulnerability in multiple products
In OISF LibHTP before 0.5.31, as used in Suricata 4.1.4 and other products, an HTTP protocol parsing error causes the http_header signature to not alert on a response with a single \r\n ending.
network
low complexity
suricata-ids oisf CWE-459
5.3
2019-09-30 CVE-2019-3733 Incomplete Cleanup vulnerability in multiple products
RSA BSAFE Crypto-C Micro Edition, all versions prior to 4.1.4, is vulnerable to three (3) different Improper Clearing of Heap Memory Before Release vulnerability, also known as 'Heap Inspection vulnerability'.
network
low complexity
emc dell CWE-459
4.9
2019-08-23 CVE-2019-13014 Incomplete Cleanup vulnerability in Obdev Little Snitch 4.4.0
Little Snitch versions 4.4.0 fixes a vulnerability in a privileged helper tool.
local
low complexity
obdev CWE-459
5.5
2019-06-20 CVE-2019-12902 Incomplete Cleanup vulnerability in Pydio Cells
Pydio Cells before 1.5.0 does incomplete cleanup of a user's data upon deletion.
network
low complexity
pydio CWE-459
6.5
2019-05-03 CVE-2019-1586 Incomplete Cleanup vulnerability in Cisco Application Policy Infrastructure Controller 4.1(0.90A)
A vulnerability in Cisco Application Policy Infrastructure Controller (APIC) Software could allow an unauthenticated, local attacker with physical access to obtain sensitive information from an affected device.
low complexity
cisco CWE-459
4.6
2019-04-25 CVE-2019-11514 Incomplete Cleanup vulnerability in Flarum 0.1.0
User/Command/ConfirmEmailHandler.php in Flarum before 0.1.0-beta.8 mishandles invalidation of user email tokens.
network
low complexity
flarum CWE-459
7.5
2019-03-21 CVE-2019-5011 Incomplete Cleanup vulnerability in Macpaw Cleanmymac X 4.20
An exploitable privilege escalation vulnerability exists in the helper service CleanMyMac X, version 4.20, due to improper updating.
local
low complexity
macpaw CWE-459
5.5
2019-02-12 CVE-2019-5595 Incomplete Cleanup vulnerability in Freebsd 11.2/12.0
In FreeBSD before 11.2-STABLE(r343782), 11.2-RELEASE-p9, 12.0-STABLE(r343781), and 12.0-RELEASE-p3, kernel callee-save registers are not properly sanitized before return from system calls, potentially allowing some kernel data used in the system call to be exposed.
local
low complexity
freebsd CWE-459
5.5