WifiHotSpot 1.0.0.0 contains an unquoted service path vulnerability in its WifiHotSpotService.exe that allows local atta
Spy Emergency 25.0.650 contains an unquoted service path vulnerability in its Windows service configurations that allows
Disk Sorter Server 13.6.12 contains an unquoted service path vulnerability in its binary path configuration that allows
ActivIdentity 8.2 contains an unquoted service path vulnerability in the ac.sharedstore service that allows local attack
Event Log Explorer 4.9.3 contains an unquoted service path vulnerability that allows local users to potentially execute
Hi-Rez Studios 5.1.6.3 contains an unquoted service path vulnerability in the HiPatchService that allows local attackers
MacPaw Encrypto 1.0.1 contains an unquoted service path vulnerability in its Encrypto Service configuration that allows
OSAS Traverse Extension 11 contains an unquoted service path vulnerability in the TravExtensionHostSvc service running w
WIN-PACK PRO 4.8 contains an unquoted service path vulnerability in the GuardTourService that allows local users to pote
WIN-PACK PRO4.8 contains an unquoted service path vulnerability in the ScheduleService that allows local users to potent
WIN-PACK PRO 4.8 contains an unquoted service path vulnerability in the WPCommandFileService that allows local users to
Brother BRAdmin Professional 3.75 contains an unquoted service path vulnerability in the BRA_Scheduler service that allo
VFS for Git 1.0.21014.1 contains an unquoted service path vulnerability in the GVFS.Service Windows service that allows
eBeam Education Suite 2.5.0.9 contains an unquoted service path vulnerability in the eBeam Device Service that allows lo
eBeam Interactive Suite 3.6 contains an unquoted service path vulnerability in the eBeam Stylus Driver service that allo
Realtek Wireless LAN Utility 700.1631 contains an unquoted service path vulnerability that allows local users to potenti
FreeLAN 2.2 contains an unquoted service path vulnerability in its Windows service configuration that allows local attac
Sandboxie Plus 0.7.2 contains an unquoted service path vulnerability in the SbieSvc service that allows local attackers
OKI Configuration Tool 1.6.53 contains an unquoted service path vulnerability in the OKI Local Port Manager service that
Pingzapper 2.3.1 contains an unquoted service path vulnerability in the PingzapperSvc service that allows local attacker
OKI Print Job Accounting 4.4.10 contains an unquoted service path vulnerability in the OkiJaSvc service that allows loca
Softros LAN Messenger 9.6.4 contains an unquoted service path vulnerability in the SoftrosSpellChecker service that allo
LogonExpert 8.1 contains an unquoted service path vulnerability in the LogonExpertSvc service running with LocalSystem p
PDF Complete Corporate Edition 4.1.45 contains an unquoted service path vulnerability in the pdfcDispatcher service that
Epson USB Display 1.6.0.0 contains an unquoted service path vulnerability in the EMP_UDSA service running with LocalSyst
HTC IPTInstaller 4.0.9 contains an unquoted service path vulnerability in the PassThru Service configuration. Attackers
Deep Instinct Windows Agent 1.2.24.0 contains an unquoted service path vulnerability in the DeepNetworkService that allo
KMSpico 17.1.0.0 contains an unquoted service path vulnerability in the Service KMSELDI configuration that allows local
Magic Mouse 2 Utilities 2.20 contains an unquoted service path vulnerability in its Windows service configuration. Attac
Microvirt MEMU Play 3.7.0 contains an unquoted service path vulnerability in the MEmusvc Windows service that allows loc
IObit Uninstaller 10 Pro contains an unquoted service path vulnerability that allows local users to potentially execute
MiniTool ShadowMaker 3.2 contains an unquoted service path vulnerability in the MTAgentService that allows local attacke
PDF Complete 3.5.310.2002 contains an unquoted service path vulnerability in its pdfsvc.exe service configuration. Attac
Kite 1.2020.1119.0 contains an unquoted service path vulnerability in the KiteService Windows service that allows local
IDT PC Audio 1.0.6499.0 contains an unquoted service path vulnerability that allows local users to potentially execute a
Realtek Andrea RT Filters 1.0.64.7 contains an unquoted service path vulnerability that allows local users to potentiall
EPSON Status Monitor 3 version 8.0 contains an unquoted service path vulnerability that allows local attackers to potent
Acer Global Registration Service 1.0.0.3 contains an unquoted service path vulnerability in its service configuration th
Wondershare Driver Install Service contains an unquoted service path vulnerability in the ElevationService executable th
Atheros Coex Service Application 8.0.0.255 contains an unquoted service path vulnerability in its Windows service config
SAntivirus IC 10.0.21.61 contains an unquoted service path vulnerability in its Windows service configuration that allow
Motorola Device Manager 2.4.5 contains an unquoted service path vulnerability in the PST Service that allows local users
Motorola Device Manager 2.5.4 contains an unquoted service path vulnerability in the MotoHelperService.exe service that
Quick 'n Easy FTP Service 3.2 contains an unquoted service path vulnerability that allows local attackers to execute arb
EPSON 1.124 contains an unquoted service path vulnerability in the SENADB service that allows local attackers to execute
IP Watcher 3.0.0.30 contains an unquoted service path vulnerability in its Windows service configuration that allows loc
Prey 1.9.6 contains an unquoted service path vulnerability that allows local users to potentially execute code with elev
Program Access Controller 1.2.0.0 contains an unquoted service path vulnerability in PACService.exe that allows local at
ForensiT AppX Management Service 2.2.0.4 contains an unquoted service path vulnerability that allows local users to pote
Input Director 1.4.3 contains an unquoted service path vulnerability in its Windows service configuration that allows lo
Frequently Asked Questions
What is CWE-428?
CWE-428 (CWE-428) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-428?
There are 204 CVE records associated with CWE-428 in our database. Of these, 1 are critical severity, 195 are high severity, and 6 are medium severity.
How can I protect against CWE-428 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-428 using AI-powered security agents.
Detect CWE-428 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-428 vulnerabilities across your infrastructure.
Get Started