cwe-20
Safeguard articles tagged "cwe-20" — guides, analysis, and best practices for software supply chain and application security.
100 articles
CVE-2021-27104: Accellion FTA OS Command Injection Vulnerability
CVE-2021-27104 affects Accellion FTA and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2020-11261: Qualcomm Multiple Chipsets Improper Input Validation Vulnerability
CVE-2020-11261 affects Qualcomm Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation ha
CVE-2021-44228: Apache Log4j2 Remote Code Execution Vulnerability
CVE-2021-44228 affects Apache Log4j2 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-12-10.
CVE-2010-1871: Red Hat Linux JBoss Seam 2 Remote Code Execution Vulnerability
CVE-2010-1871 affects Red Hat JBoss Seam 2 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-12-10.
CVE-2017-17562: Embedthis GoAhead Remote Code Execution Vulnerability
CVE-2017-17562 affects Embedthis GoAhead and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-12-10.
CVE-2013-3900: Microsoft WinVerifyTrust function Remote Code Execution
CVE-2013-3900 affects Microsoft WinVerifyTrust function and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-10.
CVE-2021-35247: SolarWinds Serv-U Improper Input Validation Vulnerability
CVE-2021-35247 affects SolarWinds Serv-U and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-21.
CVE-2012-0391: Apache Struts 2 Improper Input Validation Vulnerability
CVE-2012-0391 affects Apache Struts 2 and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2022-01-21.
CVE-2021-21985: VMware vCenter Server Improper Input Validation Vulnerability
CVE-2021-21985 affects VMware vCenter Server and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2021-36742: Trend Micro Multiple Products Improper Input Validation Vulnerability
CVE-2021-36742 affects Trend Micro Apex One, Apex One as a Service, and Worry-Free Business Security and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2018-20062: ThinkPHP "noneCms" Remote Code Execution Vulnerability
CVE-2018-20062 affects ThinkPHP noneCms and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
CVE-2017-6327: Symantec Messaging Gateway Remote Code Execution Vulnerability
CVE-2017-6327 affects Symantec Symantec Messaging Gateway and is listed in CISA's Known Exploited Vulnerabilities catalog, meaning exploitation has been observed in the wild. Added 2021-11-03.
Self-healing security runs on Safeguard.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.