Improper neutralization of special elements in .NET allows an unauthorized attacker to perform spoofing over a network.
Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthoriz
Graylog is a free and open log management platform. Prior to Graylog Server versions 6.3.12, 7.0.7, and 7.1.2 and Graylo
A vulnerability in the implementation of the proprietary SSH stack with SSH key-based authentication in Cisco Secure Fir
Frequently Asked Questions
What is CWE-138?
CWE-138 (CWE-138) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-138?
There are 5 CVE records associated with CWE-138 in our database. Of these, 0 are critical severity, 3 are high severity, and 1 are medium severity.
How can I protect against CWE-138 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-138 using AI-powered security agents.
Detect CWE-138 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-138 vulnerabilities across your infrastructure.
Get Started