Discuz! X5.0 releases 20260320 through 20260610 contains a CAPTCHA bypass vulnerability that allows unauthenticated remo
HCL Aftermarket EPC is vulnerable to brute force attacks since application doesn’t have captcha implemented. It can lead
Guessable CAPTCHA vulnerability in jp-secure SiteGuard WP Plugin siteguard allows Functionality Bypass.This issue affect
If the anti spam-captcha functionality in PluXml versions 5.8.22 and earlier is enabled, a captcha challenge is generate
WWBN AVideo is an open source video platform. In versions 29.0 and prior, `objects/getCaptcha.php` accepts the CAPTCHA l
GD::SecurityImage versions through 1.75 for Perl use rand to generate secrets. The random method creates the challenge
HCL Aftermarket EPC is affected by Sensitive Information in GET method & in URL which allows application to pass sensiti
Frequently Asked Questions
What is CWE-804?
CWE-804 (CWE-804) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-804?
There are 7 CVE records associated with CWE-804 in our database. Of these, 0 are critical severity, 0 are high severity, and 7 are medium severity.
How can I protect against CWE-804 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-804 using AI-powered security agents.
Detect CWE-804 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-804 vulnerabilities across your infrastructure.
Get Started