A vulnerability was found in Netgear WNDR3700v2 1.0.1.14 and classified as problematic. This issue affects some unknown
A vulnerability classified as problematic was found in ForU CMS. This vulnerability affects unknown code of the file /ad
A vulnerability was found in doomsider shadow. It has been classified as problematic. Affected is an unknown function. T
If a web application sends a WebSocket message concurrently with the WebSocket connection closing when running on Apache
Eclipse Californium is a Java implementation of RFC7252 - Constrained Application Protocol for IoT Cloud services. In ve
Puma is a Ruby/Rack web server built for parallelism. Prior to `puma` version `5.6.2`, `puma` may not always call `close
arm: guest_physmap_remove_page not removing the p2m mappings The functions to remove one or more entries from a guest p2
On BIG-IP versions 16.x before 16.1.0, 15.1.x before 15.1.4.1, 14.1.x before 14.1.4.4, and all versions of 13.1.x, 12.1.
In Eclipse Jetty versions 10.0.0 thru 10.0.9, and 11.0.0 thru 11.0.9 versions, SslConnection does not release ByteBuffer
A vulnerability classified as critical has been found in TEM FLEX-1085 1.6.0. Affected is an unknown function of the fil
In BIG-IP Versions 16.1.x before 16.1.2.2, 15.1.x before 15.1.6.1, and 14.1.x before 14.1.5, when the Message Routing (M
In BIG-IP Versions 17.0.x before 17.0.0.1 and 16.1.x before 16.1.3.1, when source-port preserve-strict is configured on
D-link DIR-816 A2_v1.10CNB04.img reboots the router without authentication via /goform/doReboot. No authentication is re
A vulnerability in /src/amf/amf-context.c in Open5GS 2.4.10 and earlier leads to AMF denial of service.
In Wi-Fi driver, there is a possible way to disconnect Wi-Fi due to an improper resource release. This could lead to rem
The lock screen module has defects introduced in the design process. Successful exploitation of this vulnerability may a
The IPC module has defects introduced in the design process. Successful exploitation of this vulnerability may affect sy
Improper Resource Shutdown or Release vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series R00/01/02CPU F
A DoS attack in the web application of D-Link DIR-X1860 before v1.10WWB09_Beta allows a remote unauthenticated attacker
A denial of service vulnerability exists in the cgiserver.cgi Upgrade API functionality of Reolink RLC-410W v3.0.0.136_2
D-Link Wireless AC1200 Dual Band VDSL ADSL Modem Router DSL-3782 Firmware v1.01 allows unauthenticated attackers to caus
P2M pool freeing may take excessively long The P2M pool backing second level address translation for guests may be of si
A vulnerability classified as problematic has been found in TP-Link TL-WR740N. Affected is an unknown function of the co
TeamViewer Linux versions before 15.28 do not properly execute a deletion command for the connection password in case of
HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denial of Service.
Duktape v2.99.99 was discovered to contain a SEGV vulnerability via the component duk_push_tval in duktape/duk_api_stack
Tor Browser 9.0.7 on Windows 10 build 10586 is vulnerable to information disclosure. This could allow local attackers to
Improper resource shutdown or release in firmware for some Intel(R) SSD, Intel(R) SSD DC, Intel(R) Optane(TM) SSD and In
A vulnerability classified as problematic has been found in SourceCodester Gym Management System. Affected is an unknown
BIND 9.16.11 -> 9.16.26, 9.17.0 -> 9.18.0 and versions 9.16.11-S1 -> 9.16.26-S1 of the BIND Supported Preview Edition. S
A vulnerability classified as problematic has been found in Kiddoware Kids Place. This affects the Home Button Protectio
A vulnerability, which was classified as problematic, was found in Shemes GrabIt up to 1.7.2 Beta 4. This affects the co
A vulnerability was found in Solare Solar-Log 2.8.4-56/3.5.2-85. It has been classified as problematic. Affected is an u
Discourse is the an open source discussion platform. In affected versions a maliciously crafted request for static asset
A vulnerability classified as problematic was found in Linux Kernel. This vulnerability affects the function macvlan_han
A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the fu
A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. This issue affects the function AP4_Sts
A vulnerability has been found in Axiomatic Bento4 and classified as problematic. This vulnerability affects the functio
A vulnerability was found in Axiomatic Bento4 and classified as problematic. This issue affects the function AP4_AvccAto
PingID Windows Login prior to 2.8 is vulnerable to a denial of service condition on local machines when combined with us
Go before 1.16.12 and 1.17.x before 1.17.5 on UNIX allows write operations to an unintended file or unintended network c
A vulnerability classified as problematic was found in LibTIFF 4.3.0. Affected by this vulnerability is the TIFF File Ha
A denial of service vulnerability was found in tildearrow Furnace. It has been classified as problematic. This is due to
A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant and in certain WithSecure products whereby the
A vulnerability was found in Open5GS up to 2.4.10. It has been declared as problematic. Affected by this vulnerability i
Multiple Denial-of-Service (DoS) vulnerability was discovered in F-Secure & WithSecure products whereby the aerdl.dll un
A vulnerability was found in Linux Kernel. It has been declared as problematic. Affected by this vulnerability is the fu
A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function nilfs_bmap_lo
Use after free in ChromeOS Notifications in Google Chrome on ChromeOS prior to 106.0.5249.62 allowed a remote attacker w
A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. Affected by this issue is some unknown
Frequently Asked Questions
What is CWE-404?
CWE-404 (CWE-404) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-404?
There are 847 CVE records associated with CWE-404 in our database. Of these, 2 are critical severity, 161 are high severity, and 412 are medium severity.
How can I protect against CWE-404 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-404 using AI-powered security agents.
Detect CWE-404 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-404 vulnerabilities across your infrastructure.
Get Started