Wago 750 Series PLCs with firmware version 10 and prior include a remote attack may take advantage of an improper implem
IBM WebSphere MQ 8.0.0.6 does not properly terminate channel agents when they are no longer needed, which could allow a
A elevation of privilege vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 7.0,
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when mem
An issue was discovered in EMC RSA BSAFE Crypto-J versions prior to 6.2.2. There is an Improper OCSP Validation Vulnerab
In Apache Tomcat 9.0.0.M1 to 9.0.0.M18 and 8.5.0 to 8.5.12, the handling of an HTTP/2 GOAWAY frame for a connection did
Logstash versions prior to 2.3.3, when using the Netflow Codec plugin, a remote attacker crafting malicious Netflow v5,
Unspecified vulnerability in FFMPEG 0.10 allows remote attackers to cause a denial of service.
A vulnerability in the UDP processing code of Cisco IOS 15.1, 15.2, and 15.4 and IOS XE 3.14 through 3.18 could allow an
Packetbeat versions prior to 5.6.4 are affected by a denial of service flaw in the PostgreSQL protocol handler. If Packe
drivers/hid/hid-cp2112.c in the Linux kernel 4.9.x before 4.9.9 uses a spinlock without considering that sleeping is pos
The KEYS subsystem in the Linux kernel before 4.10.13 allows local users to cause a denial of service (memory consumptio
The omninet_open function in drivers/usb/serial/omninet.c in the Linux kernel before 4.10.4 allows local users to cause
The NFSv4 implementation in the Linux kernel through 4.11.1 allows local users to cause a denial of service (resource co
A denial of service vulnerability in the Android media framework (libmediaplayerservice). Product: Android. Versions: 5.
Exim supports the use of multiple "-p" command line arguments which are malloc()'ed and never free()'ed, used in conjunc
Frequently Asked Questions
What is CWE-404?
CWE-404 (CWE-404) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-404?
There are 847 CVE records associated with CWE-404 in our database. Of these, 2 are critical severity, 161 are high severity, and 412 are medium severity.
How can I protect against CWE-404 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-404 using AI-powered security agents.
Detect CWE-404 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-404 vulnerabilities across your infrastructure.
Get Started