CWE-908 · 790 records
Use of Uninitialized Resource
CVEs in this class
790 records
| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
67This week | CVE-2023-24941No exploit | Windows Network File System Remote Code Execution Vulnerabilitymicrosoft · windows server 2012 · CWE-908 | Critical9.8 | — | 94.7% | May 9, 2023 |
56Plan | CVE-2008-0081Proof of concept | Unspecified vulnerability in Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, and Office 2004 for Mac allows user-assisted remote attmicrosoft · excel · CWE-908 | Critical9.8 | — | 57.9% | Jan 16, 2008 |
55Plan | CVE-2007-1751No exploit | Microsoft Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code by causing Internet Explorer to access an uninimicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 60.8% | Jun 12, 2007 |
52Plan | CVE-2024-50302Weaponized | HID: core: zero-initialize the report bufferlinux · linux kernel · CWE-908 | Medium5.5 | KEV | 0.8% | Nov 18, 2024 |
52Plan | CVE-2024-29745Weaponized | there is a possible Information Disclosure due to uninitialized data.google · android · CWE-908 | Medium5.5 | KEV | 0.5% | Apr 5, 2024 |
50Plan | CVE-2011-1255Proof of concept | The Timed Interactive Multimedia Extensions (aka HTML+TIME) implementation in Microsoft Internet Explorer 6 through 8 does not properly handmicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 42.1% | Jun 16, 2011 |
47Plan | CVE-2008-3475No exploit | Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml objects that have been (microsoft · internet explorer · CWE-908 | High8.8 | — | 39.9% | Oct 14, 2008 |
46Plan | CVE-2011-1995No exploit | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 28.9% | Oct 11, 2011 |
46Plan | CVE-2010-3345No exploit | Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessimicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 28.9% | Dec 16, 2010 |
46Plan | CVE-2010-3343No exploit | Microsoft Internet Explorer 6 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessimicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 28.9% | Dec 16, 2010 |
46Plan | CVE-2010-3346No exploit | Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 28.9% | Dec 16, 2010 |
45Plan | CVE-2010-2559No exploit | Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessimicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 27.5% | Aug 11, 2010 |
45Plan | CVE-2010-2557No exploit | Microsoft Internet Explorer 6 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessimicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 27.5% | Aug 11, 2010 |
45Plan | CVE-2010-2556No exploit | Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 27.5% | Aug 11, 2010 |
44Plan | CVE-2011-1963No exploit | Microsoft Internet Explorer 7 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 23.4% | Aug 10, 2011 |
44Plan | CVE-2011-1964No exploit | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 23.4% | Aug 10, 2011 |
43Plan | CVE-2011-1250No exploit | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 21.6% | Jun 16, 2011 |
43Plan | CVE-2011-1998No exploit | Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessimicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 21.2% | Oct 11, 2011 |
43Plan | CVE-2011-1256No exploit | Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 18.6% | Jun 16, 2011 |
42Plan | CVE-2011-1251No exploit | Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessimicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 18.0% | Jun 16, 2011 |
42Plan | CVE-2011-1266No exploit | The Vector Markup Language (VML) implementation in vgx.dll in Microsoft Internet Explorer 6 through 8 does not properly handle objects in memicrosoft · internet explorer · CWE-908 | Critical9.3 | — | 18.0% | Jun 16, 2011 |
42Plan | CVE-2011-1254No exploit | Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 18.0% | Jun 16, 2011 |
42Plan | CVE-2011-1262No exploit | Microsoft Internet Explorer 7 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 16.9% | Jun 16, 2011 |
42Plan | CVE-2011-1261No exploit | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code microsoft · internet explorer · CWE-908 | Critical9.3 | — | 16.9% | Jun 16, 2011 |
42Plan | CVE-2019-9641No exploit | An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3.php · php · CWE-908 | Critical9.8 | — | 9.4% | Mar 8, 2019 |
- CVE-2023-2494167This week
Windows Network File System Remote Code Execution Vulnerability
CriticalCVSS 9.8No exploitEPSS 95%microsoft · windows server 2012May 9, 2023
- CVE-2008-008156Plan
Unspecified vulnerability in Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, and Office 2004 for Mac allows user-assisted remote att
CriticalCVSS 9.8Proof of conceptEPSS 58%microsoft · excelJan 16, 2008
- CVE-2007-175155Plan
Microsoft Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code by causing Internet Explorer to access an unini
CriticalCVSS 9.3No exploitEPSS 61%microsoft · internet explorerJun 12, 2007
- CVE-2024-5030252Plan
HID: core: zero-initialize the report buffer
MediumCVSS 5.5KEVWeaponizedEPSS 1%linux · linux kernelNov 18, 2024
- CVE-2024-2974552Plan
there is a possible Information Disclosure due to uninitialized data.
MediumCVSS 5.5KEVWeaponizedEPSS 0%google · androidApr 5, 2024
- CVE-2011-125550Plan
The Timed Interactive Multimedia Extensions (aka HTML+TIME) implementation in Microsoft Internet Explorer 6 through 8 does not properly hand
CriticalCVSS 9.3Proof of conceptEPSS 42%microsoft · internet explorerJun 16, 2011
- CVE-2008-347547Plan
Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml objects that have been (
HighCVSS 8.8No exploitEPSS 40%microsoft · internet explorerOct 14, 2008
- CVE-2011-199546Plan
Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 29%microsoft · internet explorerOct 11, 2011
- CVE-2010-334546Plan
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessi
CriticalCVSS 9.3No exploitEPSS 29%microsoft · internet explorerDec 16, 2010
- CVE-2010-334346Plan
Microsoft Internet Explorer 6 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessi
CriticalCVSS 9.3No exploitEPSS 29%microsoft · internet explorerDec 16, 2010
- CVE-2010-334646Plan
Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 29%microsoft · internet explorerDec 16, 2010
- CVE-2010-255945Plan
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessi
CriticalCVSS 9.3No exploitEPSS 28%microsoft · internet explorerAug 11, 2010
- CVE-2010-255745Plan
Microsoft Internet Explorer 6 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessi
CriticalCVSS 9.3No exploitEPSS 28%microsoft · internet explorerAug 11, 2010
- CVE-2010-255645Plan
Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 28%microsoft · internet explorerAug 11, 2010
- CVE-2011-196344Plan
Microsoft Internet Explorer 7 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 23%microsoft · internet explorerAug 10, 2011
- CVE-2011-196444Plan
Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 23%microsoft · internet explorerAug 10, 2011
- CVE-2011-125043Plan
Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 22%microsoft · internet explorerJun 16, 2011
- CVE-2011-199843Plan
Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessi
CriticalCVSS 9.3No exploitEPSS 21%microsoft · internet explorerOct 11, 2011
- CVE-2011-125643Plan
Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 19%microsoft · internet explorerJun 16, 2011
- CVE-2011-125142Plan
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessi
CriticalCVSS 9.3No exploitEPSS 18%microsoft · internet explorerJun 16, 2011
- CVE-2011-126642Plan
The Vector Markup Language (VML) implementation in vgx.dll in Microsoft Internet Explorer 6 through 8 does not properly handle objects in me
CriticalCVSS 9.3No exploitEPSS 18%microsoft · internet explorerJun 16, 2011
- CVE-2011-125442Plan
Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 18%microsoft · internet explorerJun 16, 2011
- CVE-2011-126242Plan
Microsoft Internet Explorer 7 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 17%microsoft · internet explorerJun 16, 2011
- CVE-2011-126142Plan
Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code
CriticalCVSS 9.3No exploitEPSS 17%microsoft · internet explorerJun 16, 2011
- CVE-2019-964142Plan
An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3.
CriticalCVSS 9.8No exploitEPSS 9%php · phpMar 8, 2019