Spinnaker is an open source, multi-cloud continuous delivery platform. Versions prior to 2025.1.6, 2025.2.3, and 2025.3.
CoreWCF is a port of the service side of Windows Communication Foundation (WCF) to .NET Core. In version 1.9.0, CoreWCF
Kiteworks is a private data network (PDN). In Kiteworks Secure Data Forms prior to version 9.2.1, a misconfiguration of
Unprotected transport of credentials vulnerability in syslink software AG Avantra on Linux, Windows allows Sniffing Atta
Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 transmits DDNS credentials over plaintext HTTP with only Base64
HCL IEM was affected with Strict transport security not enforced. It may enable attackers to perform SSL stripping or ma
A static credential embedded in Chef 360 prior to v1.7.0 permitted unauthenticated access to internal message queues. Q
An Unprotected Transport of Credentials issue was discovered in ABB Ellipse 8.3 through Ellipse 8.9 released prior to De
Frequently Asked Questions
What is CWE-523?
CWE-523 (CWE-523) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-523?
There are 8 CVE records associated with CWE-523 in our database. Of these, 0 are critical severity, 3 are high severity, and 3 are medium severity.
How can I protect against CWE-523 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-523 using AI-powered security agents.
Detect CWE-523 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-523 vulnerabilities across your infrastructure.
Get Started