In Juju from version 3.0.0 through 3.6.18, the authorization of the "secret-set" tool is not performed correctly, which
phpMyFAQ versions 3.1.0 through 4.1.6 contain an authentication bypass vulnerability in AuthLdap::create(). When LDAP au
Print Assumptions does not report that a definition was produced while universe checking was disabled when that definiti
HCL AION is affected by a vulnerability where certain user actions are not adequately audited or logged. The absence of
HCL IntelliOps Event Management (IEM) is affected by insufficient logging. Insufficient logging weakens accountability,
Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. Prior to 2.14.2, a security v
Dell PowerScale OneFS, versions prior 9.13.0.0, contains an insufficient logging vulnerability. An unauthenticated attac
In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configur
Dell PowerScale OneFS versions 9.5.0.0 through 9.5.1.6, 9.6.0.0 through 9.7.1.13, 9.8.0.0 through 9.10.1.5 and 9.11.0.0
VMware ESX contains an insufficient logging vulnerability. A malicious administrator could exploit this issue to perform
Insufficient logging in the entry export feature in Devolutions Server allows an authenticated user with export permissi
Frequently Asked Questions
What is CWE-778?
CWE-778 (CWE-778) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-778?
There are 11 CVE records associated with CWE-778 in our database. Of these, 0 are critical severity, 2 are high severity, and 6 are medium severity.
How can I protect against CWE-778 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-778 using AI-powered security agents.
Detect CWE-778 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-778 vulnerabilities across your infrastructure.
Get Started