Vim is an open source, command line text editor. Prior to version 9.2.0495, a Vimscript code injection vulnerability exi
Livestatus injection in the notification test mode in Checkmk <2.5.0b4 and <2.4.0p26 allows an authenticated user with a
fast-uri normalize() decoded percent-encoded authority delimiters inside the host component and then re-emitted them as
Livestatus injection in the monitoring quicksearch in Checkmk <2.5.0b4 allows an authenticated attacker to inject livest
Livestatus injection in the prediction graph page in Checkmk <2.5.0b4, <2.4.0p26, and <2.3.0p47 allows an authenticated
iccDEV provides a set of libraries and tools that allow for the interaction, manipulation, and application of Internatio
Frequently Asked Questions
What is CWE-140?
CWE-140 (CWE-140) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-140?
There are 6 CVE records associated with CWE-140 in our database. Of these, 0 are critical severity, 3 are high severity, and 3 are medium severity.
How can I protect against CWE-140 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-140 using AI-powered security agents.
Detect CWE-140 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-140 vulnerabilities across your infrastructure.
Get Started