VYPR

CWE-1112

Incomplete Documentation of Program Execution

BaseIncomplete

Description

The document does not fully define all mechanisms that are used to control or influence how product-specific programs are executed.

Hierarchy (View 1000)

Parents

Children

none

CVEs mapped to this weakness (2)

  • CVE-2023-29241HigJun 30, 2023
    risk 0.53cvss 8.1epss 0.00

    Improper Information in Cybersecurity Guidebook in Bosch Building Integration System (BIS) 5.0 may lead to wrong configuration which allows local users to access data via network

  • CVE-2025-3108HigJul 6, 2025
    risk 0.42cvss 7.5epss 0.00

    A critical deserialization vulnerability exists in the run-llama/llama_index library's JsonPickleSerializer component, affecting versions v0.12.27 through v0.12.40. This vulnerability allows remote code execution due to an insecure fallback to Python's pickle module.…