An issue in the Bluetooth Low Energy implementation of Realtek RTL8762E BLE SDK v1.4.0 allows attackers to cause a Denia
Improper input validation in SMU may allow an attacker with privileges and a compromised physical function (PF) to
A Denial of Service in CLFS.sys in Microsoft Windows 10, Windows 11, Windows Server 2016, Windows Server 2019, and Windo
Due to URL previews in the network panel of developer tools improperly storing URLs, query parameters could potentially
A flaw was found in the c-ares package. The ares_set_sortlist is missing checks about the validity of the input string,
phonenumber is a library for parsing, formatting and validating international phone numbers. Prior to versions `0.3.3+8.
blurhash-rs is a pure Rust implementation of Blurhash, software for encoding images into ASCII strings that can be turne
CLTPHP <=6.0 is vulnerable to Improper Input Validation via application/admin/controller/Template.php.
Hydra is the layer-two scalability solution for Cardano. Prior to version 0.13.0, the specification states that the cont
In Condition of Condition.java, there is a possible way to grant notification access due to improper input validation. T
An issue was found in Action Launcher v50.5 allows an attacker to escalate privilege via modification of the intent stri
The geofencing kernel code has a vulnerability of not verifying the length of the input data. Successful exploitation of
The geofencing kernel code does not verify the length of the input data. Successful exploitation of this vulnerability m
A denial of service attack might be launched against the server if an unusually lengthy password (more than 10000000 cha
The HTTP server in Mongoose before 7.10 accepts requests containing negative Content-Length headers. By sending a single
Vulnerability of unstrict data verification and parameter check. Successful exploitation of this vulnerability may affec
Denial-of-service (DoS) vulnerability due to improper validation of specified type of input issue exists in the built-in
In Django 3.2 before 3.2.21, 4.1 before 4.1.11, and 4.2 before 4.2.5, django.utils.encoding.uri_to_iri() is subject to a
In Django 3.2 before 3.2.22, 4.1 before 4.1.12, and 4.2 before 4.2.6, the django.utils.text.Truncator chars() and words(
jcvi is a Python library to facilitate genome assembly, annotation, and comparative genomics. A configuration injection
In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation
In m4u, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of
A lack of length validation in GitLab CE/EE affecting all versions from 12.4 before 15.6.7, 15.7 before 15.7.6, and 15.8
An Improper Validation of Specified Quantity in Input vulnerability in the Layer-2 control protocols daemon (l2cpd) of
A vulnerability exists in the input validation of the GOOSE messages where out of range values received and processed
go-bitfield is a simple bitfield package for the go language aiming to be more performant that the standard library. Whe
An Unchecked Input for Loop Condition vulnerability in a NAT library of Juniper Networks Junos OS allows a local authent
A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Ventura 13.3, iOS 15.7.4
Multiple validation issues were addressed with improved input sanitization. This issue is fixed in macOS Ventura 13.3, i
In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In apu, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl
In several functions of PhoneAccountRegistrar.java, there is a possible way to prevent an access to emergency services d
For certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling message with an invali
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio
In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio
A vulnerability was found in SourceCodester Card Holder Management System 1.0 and classified as problematic. Affected by
Improper Input Validation in Checkmk <2.2.0p15, <2.1.0p37, <=2.0.0p39 allows priviledged attackers to cause partial deni
NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer driver, where an inval
NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer driver nvlddmkm.sys, where an ca
A stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect
Multiple vulnerabilities in Cisco Small Business RV160, RV260, RV340, and RV345 Series Routers could allow an attacker t
D-link DIR-816 A2_v1.10CNB04.img is vulnerable to Buffer Overflow via /goform/form2Wan.cgi. When wantype is 3, l2tp_usrn
a function called 'nla_parse', do not check the len of para, it will check nla_type (which can be controlled by userspac
DexLoader function get_stringidx_fromdex() in Redex prior to commit 3b44c64 can load an out of bound address when loadin
Memory Corruption in modem due to improper length check while copying into memory in Snapdragon Consumer IOT, Snapdragon
A heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A special
Binary provides encoding/decoding in Borsh and other formats. The vulnerability is a memory allocation vulnerability tha
PJSIP is a free and open source multimedia communication library written in C language. In versions prior to and includi
Lack of MBN header size verification against input buffer can lead to memory corruption in Snapdragon Auto, Snapdragon C
Frequently Asked Questions
What is CWE-1284?
CWE-1284 (CWE-1284) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-1284?
There are 430 CVE records associated with CWE-1284 in our database. Of these, 25 are critical severity, 152 are high severity, and 152 are medium severity.
How can I protect against CWE-1284 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-1284 using AI-powered security agents.
Detect CWE-1284 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-1284 vulnerabilities across your infrastructure.
Get Started