CWE-665

Medium likelihood

Improper Initialization

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.

354 vulnerabilities with CWE-665
CVE-2022-46505 HIGH
MatrixSSL <4.5.1-open - Info Disclosure
CVSS 7.5
CVE-2022-3259 HIGH
Openshift 4.9 - Missing HTTP Strict Transport Security
CVSS 7.4
CVE-2022-43468 HIGH
WordPress Popular Posts <6.0.5 - Info Disclosure
CVSS 7.5
CVE-2022-46164 CRITICAL
NodeBB < 2.6.1 - Account Takeover via Prototype Pollution in Socket.IO Message Handling
CVSS 9.4
CVE-2022-37334 HIGH
Intel(R) NUC 11 Pro - Privilege Escalation
CVSS 7.8
CVE-2022-39384 MEDIUM
OpenZeppelin Contracts <4.4.1 - Reentrancy
CVSS 5.6
CVE-2022-39284 LOW
CodeIgniter 4.0.0-4.2.6 - Cookie Security Attribute Misconfiguration
CVSS 2.6
CVE-2022-32823 MEDIUM
iPadOS < 15.6 - Unauthenticated Sensitive User Information Leak via Memory Initialization Issue
CVSS 5.5
CVE-2022-2472 HIGH
EZVIZ CS-C6N-A0-1C2WFR <5.3.0.220428 - Info Disclosure
CVSS 7.6
CVE-2022-36061 MEDIUM
Elrond go <1.3.35 - Info Disclosure
CVSS 6.5
CVE-2022-37128 CRITICAL
D-Link DIR-816 A2_v1.10CNB04.img - Unauthenticated Network Initialization via /goform/wizard_end
CVSS 9.8
CVE-2022-32579 HIGH
Intel(R) NUC Laptop Kits <BC0076 - Privilege Escalation
CVSS 7.2
CVE-2022-27493 HIGH
Intel(R) NUC Laptop Kits <BC0076 - Privilege Escalation
CVSS 7.8
CVE-2022-24378 MEDIUM
Intel(R) Data Center Manager <4.1 - DoS
CVSS 5.5
CVE-2022-2620 HIGH
Google Chrome <104.0.5112.79 - Use After Free
CVSS 8.8
CVE-2022-36364 HIGH
Apache Calcite Avatica JDBC driver - RCE
CVSS 8.8
CVE-2022-29695 HIGH
Unicorn Engine <v2.0.0-rc7 - Memory Corruption
CVSS 7.5
CVE-2022-26722 HIGH
macOS < 10.15.7 and 11.0-11.6.6 - Privilege Escalation via Memory Initialization Issue
CVSS 7.8
CVE-2022-26721 HIGH
macOS < 10.15.7 and 11.0-11.6.6 - Privilege Escalation via Memory Initialization Issue
CVSS 7.8
CVE-2022-0947 CRITICAL
ABB ARG600 Wireless Gateway Series 2.4.0-3.4.9 - Unauthenticated Remote Code Execution via Serial Port
CVSS 9.0
CVE-2022-20731 MEDIUM
Cisco Catalyst Digital Building Series Switches Firmware < 15.2(7)e - Persistent Code Execution and Denial of Service
CVSS 4.6
CVE-2022-20661 MEDIUM
Cisco IOS 15.2(5)ex-15.2(7)e5 - Persistent Code Execution and Denial of Service via Improper Initialization
CVSS 4.6
CVE-2022-22186 HIGH
Juniper Networks Junos OS <19.1R3-S8, <19.2 - Improper Initialization
CVSS 7.2
CVE-2022-1122 MEDIUM
openjpeg2 2.4.0 - Denial of Service via Uninitialized Pointer Free
CVSS 5.5
CVE-2022-22657 HIGH
Logic Pro <10.7.3, GarageBand <10.4.6, macOS Monterey <12.3 - Memor...
CVSS 7.8
Details
Vulnerabilities 354
Exploit Likelihood Medium