LinkAce is a self-hosted archive to collect website links. Versions 2.3.1 and below allow any authenticated user to expo
LinkAce is a self-hosted archive to collect website links. In versions 2.3.1 and below, authenticated RSS feed endpoints
A vulnerability in the XiaozhangBang Voluntary Like System V8.8 allows remote attackers to manipulate the zhekou paramet
Improper access control in Devolutions allows a View-only user to retrieve sensitive third-level nested fields, such as
There is an arbitrary file download vulnerability in GuoMinJim PersonManage thru commit 5a02b1ab208feacf3a34fc123c938116
BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/que
A class name enumeration was found in Keyfactor SignServer versions prior to 7.3.2. Setting any chosen class name to any
Incorrect access control in mihomo v1.19.11 allows authenticated attackers with low-level privileges to read arbitrary f
An issue was discovered in bridgetech VBC Server & Element Manager, firmware version 6.5.0-10 , 6.5.0-9, allowing unauth
Incorrect access control in the getSubUsersByProvider function of OpenCode Systems USSD Gateway OC Release: 5 Version 6.
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.6, an information disclosure vulnerabil
RomM (ROM Manager) allows users to scan, enrich, browse and play their game collections with a clean and responsive inte
Incorrect access control in the Identity Provider service of usememos memos v0.25.2 allows attackers with low-level priv
An improper access control vulnerability in Fortinet FortiSOAR PaaS 7.6.0 through 7.6.2, FortiSOAR PaaS 7.5.0 through 7.
Turms IM Server v0.10.0-SNAPSHOT and earlier contains a broken access control vulnerability in the user online status qu
A vulnerability in Absolute Persistence® versions before 2.8 exists when it is not activated. This may allow a skilled a
Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Web Utilities). Suppo
A vulnerability was found in Campcodes Project Management System 1.0. It has been declared as critical. This vulnerabili
A vulnerability, which was classified as critical, has been found in ZeroWdd studentmanager 1.0. This issue affects the
A vulnerability, which was classified as critical, was found in ZeroWdd studentmanager 1.0. Affected is the function add
A vulnerability classified as critical has been found in zhenfeng13 My-Blog 1.0. Affected is the function uploadFileByEd
A vulnerability classified as critical was found in zhenfeng13 My-Blog 1.0. Affected by this vulnerability is the functi
A vulnerability, which was classified as critical, has been found in ZeroWdd myblog 1.0. This issue affects the function
A vulnerability was found in SingMR HouseRent 1.0. It has been rated as critical. Affected by this issue is some unknown
A vulnerability classified as critical has been found in SingMR HouseRent 1.0. This affects the function singleUpload/up
A vulnerability was found in code-projects Online Bike Rental System 1.0 and classified as critical. Affected by this is
A vulnerability, which was classified as critical, has been found in CampCodes Computer Laboratory Management System 1.0
A vulnerability classified as critical was found in 1902756969 reggie 1.0. Affected by this vulnerability is the functio
A vulnerability was found in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.0.0. It has been classified
A vulnerability classified as critical was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. T
A vulnerability, which was classified as problematic, was found in pankajindevops scale up to 20241113. This affects an
A vulnerability has been found in SourceCodester Food Menu Manager 1.0 and classified as critical. Affected by this vuln
A vulnerability was found in SourceCodester Best Church Management Software 1.0. It has been declared as critical. Affec
A vulnerability has been found in Zorlan SkyCaiji 2.9 and classified as critical. This vulnerability affects the functio
A vulnerability, which was classified as critical, has been found in zj1983 zz up to 2024-8. This issue affects some unk
A vulnerability, which was classified as critical, was found in zj1983 zz up to 2024-8. This affects an unknown part of
A vulnerability has been found in osuuu LightPicture 1.2.2 and classified as critical. This vulnerability affects the fu
A vulnerability has been found in shishuocms 1.1 and classified as critical. This vulnerability affects the function han
Improper Access Control vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.2.0 th
Improper Access Control vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 10.0.0 t
A vulnerability classified as critical has been found in ChestnutCMS up to 1.5.2. This affects the function uploadFile o
A vulnerability was found in s-a-zhd Ecommerce-Website-using-PHP 1.0 and classified as critical. Affected by this issue
A vulnerability, which was classified as critical, was found in zzskzy Warehouse Refinement Management System 3.1. Affec
A vulnerability classified as critical has been found in Thinkware Car Dashcam F800 Pro up to 20250226. Affected is an u
A vulnerability, which was classified as critical, has been found in zzskzy Warehouse Refinement Management System 1.3.
A vulnerability was found in IROAD Dash Cam FX2 up to 20250308. It has been rated as critical. Affected by this issue is
A vulnerability was found in SourceCodester Best Church Management Software 1.0. It has been declared as critical. Affec
A vulnerability was found in phplaozhang LzCMS-LaoZhangBoKeXiTong up to 1.1.4. It has been rated as critical. Affected b
A vulnerability was found in Yue Lao Blind Box 月老盲盒 up to 4.0. It has been declared as critical. This vulnerability affe
A vulnerability classified as critical has been found in PHPGurukul eLearning System 1.0. Affected is an unknown functio
Frequently Asked Questions
What is CWE-284?
CWE-284 (CWE-284) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-284?
There are 7,306 CVE records associated with CWE-284 in our database. Of these, 877 are critical severity, 2593 are high severity, and 2830 are medium severity.
How can I protect against CWE-284 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-284 using AI-powered security agents.
Detect CWE-284 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-284 vulnerabilities across your infrastructure.
Get Started