During an internal security assessment, an improperly protected key was discovered in Lenovo Dock Manager that could all
CSL 1010 M2M 3G WiFi Module firmware through 2.2.1.4 contains a weak encryption vulnerability that allows unauthenticate
An attacker with access to the project file could use the exposed credentials to impersonate users, escalate privileges
Dell Client Platform BIOS contains a Weak Encoding for Password vulnerability. An unauthenticated attacker with physical
A vulnerability has been identified in syngo.plaza VB30E (All versions < VB30E_HF07). The affected application does not
The credentials required to access the device's web server are sent in base64 within the HTTP headers. Since base64 is n
Use of a custom token encoding algorithm in Streamsoft Prestiż software allows the value of the KSeF (Krajowy System e-F
Tinycontrol devices such as tcPDU and LAN Controllers LK3.5, LK3.9 and LK4 have two separate authentication mechanisms -
Use of a weak password encoding algorithm in STER software allows the value of the password to be guessed after analyzin
A Weak Cryptography for Passwords issue was discovered in General Electric (GE) Multilin SR 750 Feeder Protection Relay,
Frequently Asked Questions
What is CWE-261?
CWE-261 (CWE-261) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-261?
There are 11 CVE records associated with CWE-261 in our database. Of these, 1 are critical severity, 1 are high severity, and 4 are medium severity.
How can I protect against CWE-261 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-261 using AI-powered security agents.
Detect CWE-261 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-261 vulnerabilities across your infrastructure.
Get Started