NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the cuobjdump binary, where a user could cause a c
NVIDIA CUDA toolkit for Linux and Windows contains a vulnerability in the cuobjdump binary, where a user could cause a c
n affected platforms running Arista EOS, ACL policies may not be enforced. IPv4 ingress ACL, MAC ingress ACL, or IPv6 st
Improper access control in the IOMMU may allow a privileged attacker to bypass RMP checks, potentially leading to a loss
Incorrect authentication vulnerability in ParkingDoor. Through this vulnerability it is possible to operate the device w
Improper access control on the NetScaler Management Interface in NetScaler ADC and NetScaler Gateway when an attacker ca
Improper Input Validation vulnerability in OpenText Self Service Password Reset allows Authentication Bypass.This issue
N-central < 2025.4 can generate sessionIDs for unauthenticated users This issue affects N-central: before 2025.4.
The security state of the calling processor into Trusted Firmware (TF-A) is not used and could potentially allow non-sec
The Secure Flag passed to Versal™ Adaptive SoC’s Trusted Firmware for Cortex®-A processors (TF-A) for Arm’s Power State
Allocation of Resources Without Limits or Throttling, Improper Validation of Specified Quantity in Input vulnerability i
PocketMine-MP versions prior to 4.18.1 contain an improper input validation vulnerability in inventory transaction handl
CIRCUTOR Q-SMT in its firmware version 1.0.4, could be affected by a denial of service (DoS) attack if an attacker with
In OPPO Store APP, there's a possible escalation of privilege due to improper input validation.
Insufficient data validation in Mojo in Google Chrome prior to 129.0.6668.89 allowed a remote attacker who had compromis
The ctl_report_supported_opcodes function did not sufficiently validate a field provided by userspace, allowing an arbit
phonenumber is a library for parsing, formatting and validating international phone numbers. Since 0.3.4, the phonenumbe
In the Linux kernel, the following vulnerability has been resolved: mac80211: fix skb length check in ieee80211_scan_rx
Improper Validation of Specified Quantity in Input vulnerability in Tips and Tricks HQ WP Express Checkout (Accept PayPa
An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. The urlize and urlizetrunc template filters, a
Florent Thiéry has found that selected Axis devices were vulnerable to handling certain ethernet frames which could lead
Faulty input validation in the core of Apache allows malicious or exploitable backend/content generators to split HTTP r
In the Linux kernel, the following vulnerability has been resolved: enic: Validate length of nl attributes in enic_set_
A memory corruption vulnerability exists in the affected products when parsing DFT files. Local threat actors can explo
ImpactThe default .htaccess file has some restrictions in the access to PHP files to only allow specific PHP files to be
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_sock: Fix not validating setsockopt
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix not validating setsockopt user
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix not validating setsockopt use
A sym-linked file accessed via the repair function in Avast Antivirus <24.2 on Windows may allow user to elevate privile
An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 2100, 1280, 2200, 1330, 1380, 1480, 24
A key used in logging.json does not follow the least privilege principle by default and is exposed to local users in th
A vulnerability was reported in a system recovery bootloader that was part of the Lenovo preloaded Windows 7 and 8 ope
An improper access control was identified in the Identity Security Cloud (ISC) message server API that allowed an authen
Improper Validation of Specified Quantity in Input vulnerability in The Events Calendar BookIt allows Manipulating Hidde
IBM InfoSphere Information Server 11.7 could allow an authenticated user to GUI to not load or stop working due to impro
BT: Unchecked user input in bap_broadcast_assistant
A vulnerability was discovered in Samsung Mobile Processors Exynos 2200 and Exynos 2400 where they lack a check for the
A vulnerability was discovered in Samsung Mobile Processors Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 12
Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric CNC Series allows a remote unaut
Improper Input Validation vulnerability in ABB 800xA Base. An attacker who successfully exploited this vulnerability co
The Eaton Foreseer software provides multiple customizable input fields for the users to configure parameters in the too
In SecurityCommand message after as security has been actived., there is a possible improper input validation. This coul
In the Linux kernel, the following vulnerability has been resolved: netdevsim: prevent bad user input in nsim_dev_healt
Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via networ
NLnet Labs Unbound up to and including version 1.21.0 contains a vulnerability when handling replies with very large RRs
Integer Overflow or Wraparound, Improper Validation of Specified Quantity in Input vulnerability in RestApp Inc. Online
Improper input validation in Power Management Firmware (PMFW) may allow an attacker with privileges to send a malformed
A vulnerability was discovered in Samsung Mobile Processors Exynos 1280, Exynos 2200, Exynos 1330, Exynos 1380, and Exyn
NVIDIA CUDA Toolkit contains a vulnerability in command 'cuobjdump' where a user may cause a crash or produce incorrect
A vulnerability classified as problematic was found in SourceCodester Food Ordering Management System 1.0. This vulnerab
Frequently Asked Questions
What is CWE-1284?
CWE-1284 (CWE-1284) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-1284?
There are 430 CVE records associated with CWE-1284 in our database. Of these, 25 are critical severity, 152 are high severity, and 152 are medium severity.
How can I protect against CWE-1284 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-1284 using AI-powered security agents.
Detect CWE-1284 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-1284 vulnerabilities across your infrastructure.
Get Started