Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CWE-254 (7PK-安全功能) — Vulnerability Class 6

6 vulnerabilities classified as CWE-254 (7PK-安全功能). AI Chinese analysis included.

This page aggregates security vulnerabilities associated with the specific weakness class CWE-254, which addresses the "New Memory Was Referenced Before It Was Initialized" condition. The collection covers historical data regarding software components affected by this memory management flaw. The dataset spans advisories published over the last several years, focusing on instances where developers accessed uninitialized memory regions, potentially leading to unpredictable behavior or security breaches. Here, you can track a vendor's historical advisories related to this specific defect class. It also allows users to understand the technical implications of uninitialized memory access and examine the vulnerability history of specific products. By analyzing the aggregated data, users can identify recurring patterns in how this weakness manifests across different codebases. The page serves as a reference for understanding the scope of CWE-254 in the wild, facilitating risk assessment and remediation planning. No individual CVE identifiers are listed in this summary; the focus remains on the aggregate view of this weakness type.

CVE ID Title CVSS Severity Published
CVE-2021-43177 Devise-Two-Factor 安全漏洞 — devise-two-factor 5.3 - 2022-04-11
CVE-2021-40006 Huawei HarmonyOS Wearables 加密问题漏洞 — HarmonyOS 7.5 - 2022-01-07
CVE-2018-6336 Facebook osquery 安全特征问题漏洞 — osquery 7.8 - 2018-12-31
CVE-2018-0353 Cisco Web Security Appliance AsyncOS 安全特征问题漏洞 — Cisco Web Security Appliance unknown 6.5 - 2018-06-07
CVE-2018-0110 Cisco WebEx Meetings Server 安全漏洞 — Cisco WebEx Meetings Server 8.1 - 2018-01-18
CVE-2017-12353 Cisco Email Security Appliance Cisco AsyncOS Software Multipurpose Internet Mail Extensions scanner 安全漏洞 — Cisco Email Security Appliance 5.8 - 2017-11-30

Vulnerabilities classified as CWE-254 (7PK-安全功能) represent 6 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.