CWE-1188

Initialization of a Resource with an Insecure Default

Parent: CWE-1419 - Incorrect Initialization of Resource

The product initializes or sets a resource with a default that is intended to be changed by the product's installer, administrator, or maintainer, but the default is not secure.

261 vulnerabilities with CWE-1188
CVE-2023-48733 MEDIUM
Ubuntu EDK2 - Privilege Escalation
CVSS 6.7
CVE-2023-6448 CRITICAL KEV
Unitronics VisiLogic <9.9.00 - Info Disclosure
CVSS 9.8
CVE-2023-27516 HIGH
Softether VPN - Authentication Bypass
CVSS 7.3
CVE-2023-45312 HIGH
mtproto_proxy <0.7.2 - RCE
CVSS 8.8
CVE-2023-5368 MEDIUM
msdosfs - Info Disclosure
CVSS 6.5
CVE-2023-40708 MEDIUM
SNAP PAC S1 Firmware <R10.3b - Info Disclosure
CVSS 5.8
CVE-2023-3453 HIGH
ETIC Telecom RAS <4.7.0 - DoS
CVSS 7.1
CVE-2023-35689 HIGH
Android - Privilege Escalation
CVSS 7.8
CVE-2023-3485 LOW
Temporal < 1.20.0 - Incorrect Authorization
CVSS 3.0
CVE-2023-33949 MEDIUM
Liferay Portal <7.3.0 & Liferay DXP <7.2 - Info Disclosure
CVSS 5.3
CVE-2023-31101 MEDIUM
Apache InLong <1.7.0 - Info Disclosure
CVSS 6.5
CVE-2023-1618 HIGH
Mitsubishi Electric MELSEC WS Series - Auth Bypass
CVSS 7.5
CVE-2023-27524 HIGH KEV
Apache Superset Signed Cookie Priv Esc
CVSS 8.9
CVE-2023-28978 MEDIUM
Juniper Networks Junos OS Evolved <20.4R3-S7-EVO, <21.1R3-S4-EVO - ...
CVSS 5.3
CVE-2022-49099 MEDIUM
Linux kernel - Buffer Overflow
CVSS 5.5
CVE-2022-48493 HIGH
Secure OS Module - DoS
CVSS 7.5
CVE-2022-48492 HIGH
Secure OS Module - DoS
CVSS 7.5
CVE-2022-48432 MEDIUM
JetBrains IntelliJ IDEA <2023.1 - Info Disclosure
CVSS 5.2
CVE-2022-38745 HIGH
Apache OpenOffice <4.1.14 - Code Injection
CVSS 7.8
CVE-2022-4224 HIGH
Codesys Control For Beaglebone SL < 4.8.0.0 - Denial of Service
CVSS 8.8
CVE-2022-48342 MEDIUM
JetBrains TeamCity <2022.10.2 - Info Disclosure
CVSS 5.2
CVE-2022-47196 MEDIUM
Ghost Foundation Ghost 5.9.4 - Privilege Escalation
CVSS 5.4
CVE-2022-47194 MEDIUM
Ghost Foundation Ghost 5.9.4 - Privilege Escalation
CVSS 5.4
CVE-2022-2196 MEDIUM
Linux Kernel <6.2 - Speculative Execution
CVSS 5.8
CVE-2022-20466 MEDIUM
Android - Info Disclosure
CVSS 5.5
Details
Vulnerabilities 261