Vulnerabilities > Insecure Default Initialization of Resource

DATE CVE VULNERABILITY TITLE RISK
2020-11-10 CVE-2020-13927 Insecure Default Initialization of Resource vulnerability in Apache Airflow
The previous default setting for Airflow's Experimental API was to allow all API requests without authentication, but this poses security risks to users who miss this fact.
network
low complexity
apache CWE-1188
critical
9.8
2020-10-29 CVE-2020-11489 Insecure Default Initialization of Resource vulnerability in Intel BMC Firmware 1.06.06/2.47
NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30 and all DGX-2 with BMC firmware versions prior to 1.06.06, contain a vulnerability in the AMI BMC firmware in which default SNMP community strings are used, which may lead to information disclosure.
network
low complexity
intel CWE-1188
7.5
2020-10-14 CVE-2020-0416 Insecure Default Initialization of Resource vulnerability in Google Android
In multiple settings screens, there are possible tapjacking attacks due to an insecure default value.
network
low complexity
google CWE-1188
8.8
2020-10-09 CVE-2020-26930 Insecure Default Initialization of Resource vulnerability in Netgear Ex7700 Firmware
NETGEAR EX7700 devices before 1.0.0.210 are affected by incorrect configuration of security settings.
network
low complexity
netgear CWE-1188
3.8
2020-09-24 CVE-2020-24365 Insecure Default Initialization of Resource vulnerability in Gemteks Wrtm-127Acn Firmware and Wrtm-127X9 Firmware
An issue was discovered on Gemtek WRTM-127ACN 01.01.02.141 and WRTM-127x9 01.01.02.127 devices.
network
low complexity
gemteks CWE-1188
8.8
2020-09-18 CVE-2020-0271 Insecure Default Initialization of Resource vulnerability in Google Android 11.0
In the Settings app, there is an insecure default value.
local
low complexity
google CWE-1188
7.3
2020-09-17 CVE-2020-0394 Insecure Default Initialization of Resource vulnerability in Google Android
In onCreate of BluetoothPairingDialog.java, there is a possible tapjacking vector due to an insecure default value.
local
low complexity
google CWE-1188
7.8
2020-09-17 CVE-2020-0386 Insecure Default Initialization of Resource vulnerability in Google Android
In onCreate of RequestPermissionActivity.java, there is a possible tapjacking vector due to an insecure default value.
local
low complexity
google CWE-1188
5.5
2020-07-28 CVE-2020-7685 Insecure Default Initialization of Resource vulnerability in Umbraco Forms
This affects all versions of package UmbracoForms.
network
low complexity
umbraco CWE-1188
7.5
2020-06-24 CVE-2020-10279 Insecure Default Initialization of Resource vulnerability in multiple products
MiR robot controllers (central computation unit) makes use of Ubuntu 16.04.2 an operating system, Thought for desktop uses, this operating system presents insecure defaults for robots.
9.8