Vulnerabilities > Insecure Default Initialization of Resource

DATE CVE VULNERABILITY TITLE RISK
2020-01-06 CVE-2019-16272 Insecure Default Initialization of Resource vulnerability in Dten D5 Firmware and D7 Firmware
On DTEN D5 and D7 before 1.3.4 devices, factory settings allows for firmware reflash and Android Debug Bridge (adb) enablement.
network
low complexity
dten CWE-1188
critical
9.8
2019-12-19 CVE-2019-19340 Insecure Default Initialization of Resource vulnerability in Redhat Ansible Tower and Enterprise Linux
A flaw was found in Ansible Tower, versions 3.6.x before 3.6.2 and 3.5.x before 3.5.3, where enabling RabbitMQ manager by setting it with '-e rabbitmq_enable_manager=true' exposes the RabbitMQ management interface publicly, as expected.
network
low complexity
redhat CWE-1188
8.2
2019-12-09 CVE-2019-4621 Insecure Default Initialization of Resource vulnerability in IBM Datapower Gateway
IBM DataPower Gateway 7.6.0.0-7 throug 6.0.14 and 2018.4.1.0 through 2018.4.1.5 have a default administrator account that is enabled if the IPMI LAN channel is enabled.
network
low complexity
ibm CWE-1188
critical
9.8
2019-11-13 CVE-2019-2197 Insecure Default Initialization of Resource vulnerability in Google Android
In processPhonebookAccess of CachedBluetoothDevice.java, there is a possible permission bypass due to an insecure default value.
local
low complexity
google CWE-1188
5.5
2019-11-07 CVE-2008-3278 Insecure Default Initialization of Resource vulnerability in Redhat Frysk 20080805
frysk packages through 2008-08-05 as shipped in Red Hat Enterprise Linux 5 are built with an insecure RPATH set in the ELF header of multiple binaries in /usr/bin/f* (e.g.
local
low complexity
redhat CWE-1188
7.8
2019-11-06 CVE-2010-2247 Insecure Default Initialization of Resource vulnerability in Makepasswd Project Makepasswd 1.10
makepasswd 1.10 default settings generate insecure passwords
network
low complexity
makepasswd-project CWE-1188
7.5
2019-09-08 CVE-2019-16102 Insecure Default Initialization of Resource vulnerability in Silver-Peak Unity Edgeconnect Sd-Wan Firmware 8.1.4.965644
Silver Peak EdgeConnect SD-WAN before 8.1.7.x has an SNMP service with a public value for rocommunity and trapcommunity.
network
low complexity
silver-peak CWE-1188
critical
9.8
2019-09-05 CVE-2019-14222 Insecure Default Initialization of Resource vulnerability in Alfresco
An issue was discovered in Alfresco Community Edition versions 6.0 and lower.
network
low complexity
alfresco CWE-1188
critical
9.8
2019-08-26 CVE-2019-4169 Insecure Default Initialization of Resource vulnerability in IBM Open Power Op910/Op920
IBM Open Power Firmware OP910 and OP920 could allow access to BMC via IPMI using default OpenBMC password even after BMC password was changed away from the default password.
network
low complexity
ibm CWE-1188
critical
9.1
2019-08-26 CVE-2019-15304 Insecure Default Initialization of Resource vulnerability in Progradegrill Wifi Grilling Thermometer Firmware 1.0050006
Lierda Grill Temperature Monitor V1.00_50006 has a default password of admin for the admin account, which allows an attacker to cause a Denial of Service or Information Disclosure via the undocumented access-point configuration page located on the device.
network
low complexity
progradegrill CWE-1188
critical
9.1