Vulnerabilities > Insecure Default Initialization of Resource

DATE CVE VULNERABILITY TITLE RISK
2022-09-19 CVE-2022-40468 Insecure Default Initialization of Resource vulnerability in Tinyproxy Project Tinyproxy
Potential leak of left-over heap data if custom error page templates containing special non-standard variables are used.
network
low complexity
tinyproxy-project CWE-1188
7.5
2022-09-13 CVE-2022-1278 Insecure Default Initialization of Resource vulnerability in Redhat products
A flaw was found in WildFly, where an attacker can see deployment names, endpoints, and any other data the trace payload may contain.
network
low complexity
redhat CWE-1188
7.5
2022-06-24 CVE-2022-31806 Insecure Default Initialization of Resource vulnerability in Codesys Plcwinnt and Runtime Toolkit
In CODESYS V2 PLCWinNT and Runtime Toolkit 32 in versions prior to V2.4.7.57 password protection is not enabled by default and there is no information or prompt to enable password protection at login in case no password is set at the controller.
network
codesys CWE-1188
6.8
2022-05-20 CVE-2022-24287 Insecure Default Initialization of Resource vulnerability in Siemens products
A vulnerability has been identified in SIMATIC PCS 7 V8.2 (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3 UC06), SIMATIC PCS 7 V9.1 (All versions < V9.1 SP1 UC01), SIMATIC WinCC Runtime Professional V16 and earlier (All versions), SIMATIC WinCC Runtime Professional V17 (All versions < V17 Upd4), SIMATIC WinCC V7.3 (All versions), SIMATIC WinCC V7.4 (All versions < V7.4 SP1 Update 21), SIMATIC WinCC V7.5 (All versions < V7.5 SP2 Update 8).
local
low complexity
siemens CWE-1188
7.8
2022-05-12 CVE-2021-33130 Insecure Default Initialization of Resource vulnerability in Intel Realsense ID F450 Firmware
Insecure default variable initialization of Intel(R) RealSense(TM) ID Solution F450 before version 2.6.0.74 may allow an unauthenticated user to potentially enable information disclosure via physical access.
local
low complexity
intel CWE-1188
2.1
2022-04-26 CVE-2022-24706 Insecure Default Initialization of Resource vulnerability in Apache Couchdb
In Apache CouchDB prior to 3.2.2, an attacker can access an improperly secured default installation without authenticating and gain admin privileges.
network
low complexity
apache CWE-1188
critical
9.8
2022-03-30 CVE-2021-39767 Insecure Default Initialization of Resource vulnerability in Google Android 12.1
In miniadb, there is a possible way to get read/write access to recovery system properties due to an insecure default value.
local
low complexity
google CWE-1188
4.6
2022-03-24 CVE-2022-25568 Insecure Default Initialization of Resource vulnerability in Motioneye Project Motioneye
MotionEye v0.42.1 and below allows attackers to access sensitive information via a GET request to /config/list.
network
low complexity
motioneye-project CWE-1188
7.5
2021-12-07 CVE-2021-38759 Insecure Default Initialization of Resource vulnerability in Raspberrypi Raspberry PI OS Lite 5.10
Raspberry Pi OS through 5.10 has the raspberry default password for the pi account.
network
low complexity
raspberrypi CWE-1188
critical
10.0
2021-11-24 CVE-2021-41192 Insecure Default Initialization of Resource vulnerability in Redash
Redash is a package for data visualization and sharing.
network
redash CWE-1188
3.5