Vulnerabilities > Insecure Default Initialization of Resource

DATE CVE VULNERABILITY TITLE RISK
2021-07-14 CVE-2021-0144 Insecure Default Initialization of Resource vulnerability in Intel products
Insecure default variable initialization for the Intel BSSA DFT feature may allow a privileged user to potentially enable an escalation of privilege via local access.
local
low complexity
intel CWE-1188
7.2
2021-07-01 CVE-2021-35336 Insecure Default Initialization of Resource vulnerability in Tieline IP Audtio Gateway Firmware 2.6.4.8
Tieline IP Audio Gateway 2.6.4.8 and below is affected by Incorrect Access Control.
network
low complexity
tieline CWE-1188
7.5
2021-06-22 CVE-2021-0534 Insecure Default Initialization of Resource vulnerability in Google Android 11.0
In permission declarations of DeviceAdminReceiver.java, there is a possible lack of broadcast protection due to an insecure default value.
local
low complexity
google CWE-1188
4.6
2021-06-16 CVE-2021-34203 Insecure Default Initialization of Resource vulnerability in Dlink Dir-2640-Us Firmware 1.01B04
D-Link DIR-2640-US 1.01B04 is vulnerable to Incorrect Access Control.
low complexity
dlink CWE-1188
8.1
2021-05-06 CVE-2021-21505 Insecure Default Initialization of Resource vulnerability in Dell EMC Integrated System for Microsoft Azure Stack HUB Firmware 1906/2011
Dell EMC Integrated System for Microsoft Azure Stack Hub, versions 1906 – 2011, contain an undocumented default iDRAC account.
network
low complexity
dell CWE-1188
critical
9.8
2021-04-13 CVE-2021-0468 Insecure Default Initialization of Resource vulnerability in Google Android
In LK, there is a possible escalation of privilege due to an insecure default value.
4.4
2021-04-02 CVE-2021-28123 Insecure Default Initialization of Resource vulnerability in Cohesity Dataplatform
Undocumented Default Cryptographic Key Vulnerability in Cohesity DataPlatform version 6.3 prior 6.3.1g, 6.4 up to 6.4.1c and 6.5.1 through 6.5.1b.
network
low complexity
cohesity CWE-1188
7.5
2020-11-12 CVE-2020-12327 Insecure Default Initialization of Resource vulnerability in Intel Thunderbolt DCH Driver
Insecure default variable initialization in some Intel(R) Thunderbolt(TM) DCH drivers for Windows* before version 72 may allow a privileged user to potentially enable information disclosure via local access.
local
low complexity
intel CWE-1188
2.1
2020-11-12 CVE-2020-8705 Insecure Default Initialization of Resource vulnerability in Intel products
Insecure default initialization of resource in Intel(R) Boot Guard in Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.10, 14.0.45 and 14.5.25, Intel(R) TXE versions before 3.1.80 and 4.0.30, Intel(R) SPS versions before E5_04.01.04.400, E3_04.01.04.200, SoC-X_04.00.04.200 and SoC-A_04.00.04.300 may allow an unauthenticated user to potentially enable escalation of privileges via physical access.
local
low complexity
intel CWE-1188
4.6
2020-11-10 CVE-2020-13927 Insecure Default Initialization of Resource vulnerability in Apache Airflow
The previous default setting for Airflow's Experimental API was to allow all API requests without authentication, but this poses security risks to users who miss this fact.
network
low complexity
apache CWE-1188
critical
9.8