Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CWE-158

Improper Neutralization of Null Byte or NUL Character

The product receives input from an upstream component, but it does not neutralize or incorrectly neutralizes NUL characters or null bytes when they are sent to a downstream component.

27
Assigned CVEs
294th
Commonality Rank
6.4
Avg CVSS
7.4%
In CISA KEV

Volume and Severity of Assigned CVEs Over Time

Volume of CVEs assigned to CWE-158 and their average CVSS base score over time.

Volume of CVEsAvg CVSS Base Score
First CVE
May 29, 2009
17 years ago
Most Recent CVE
Jun 26, 2026
28 days ago

Top CVEs Assigned This CWE

Top CVEs that have been assigned this CWE. A single CVE can have multiple CWE assignments, though many have just one.

27 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-47812CRITICAL
In Wing FTP Server before 7.4.4. the user and admin web interfaces mishandle '\0' bytes, ultimately allowing injection of arbitrary Lua code into user session files. This can be us
Jul 10, 202510.099YESYES
CVE-2009-1537HIGH
Unspecified vulnerability in the QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4, Windows XP SP2 and SP3, and Wi
May 29, 20098.887YESNO
CVE-2025-55113CRITICAL
If the Access Control List is enforced by the Control-M/Agent and the C router is in use (default in Out-of-support Control-M/Agent versions 9.0.18 to 9.0.20 and potentially earlie
Sep 16, 202510.034NONO
CVE-2025-14388CRITICAL
The PhastPress plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Read via null byte injection in all versions up to, and including, 3.7. This is due to a discrep
Dec 23, 20259.833NONO
CVE-2026-23863MEDIUM
An attachment spoofing issue in WhatsApp for Windows prior to v2.3000.1032164386.258709 could have allowed maliciously formatted documents with embedded NUL bytes in the filename t
May 1, 20266.530NONO
CVE-2020-14500CRITICAL
Secomea GateManager all versions prior to 9.2c, An attacker can send a negative value and overwrite arbitrary data.
Aug 25, 20209.830NONO
CVE-2025-9648HIGH
A vulnerability in the CivetWeb library's function mg_handle_form_request allows remote attackers to trigger a denial of service (DoS) condition. By sending a specially crafted HTT
Sep 29, 20258.729NONO
CVE-2023-5719CRITICAL
The Crimson 3.2 Windows-based configuration tool allows users with administrative access to define new passwords for users and to download the resulting security configuration to
Nov 6, 20239.828NONO
CVE-2026-33191HIGH
Free5GC is an open-source Linux Foundation project for 5th generation (5G) mobile core networks. Versions prior to 1.4.2 are vulnerable to null byte injection in URL path parameter
Mar 20, 20268.627NONO
CVE-2025-66263HIGH
Unauthenticated Arbitrary File Read via Null Byte Injection in DB Electronica Telecomunicazioni S.p.A. Mozart FM Transmitter versions 30, 50, 100, 300, 500, 1000, 2000, 3000, 3500,
Nov 26, 20257.525NONO
View all 27 CVEs →

CVE Severity & Scoring

This CWEGlobal (All CVEs)
0.0-0.9
1.0-1.9
2.0-2.9
22%
3.0-3.9
10%
4.0-4.9
11%
19%
5.0-5.9
15%
16%
6.0-6.9
26%
7.0-7.9
15%
11%
8.0-8.9
19%
14%
9.0-10.0
unknown
CVSS Score Range

Exploit Exposure

Exploit activity across CVEs assigned to this CWE, including CVEs that carry other CWE assignments.

CISA KEV
2 CVEs
7.4% of CVEs· 99th percentile
Metasploit
1 CVE
3.7% of CVEs· 96th percentile
Nuclei
1 CVE
3.7% of CVEs· 94th percentile
ExploitDB
1 CVE
3.7% of CVEs· 93rd percentile

Social Chatter

Social posts that mention CVE IDs assigned to this CWE. This is assigned-CVE activity, not mentions of the CWE label itself.

Media Mentions

Media articles that mention CVE IDs assigned to this CWE. This is assigned-CVE coverage, not mentions of the CWE label itself.

Top Affected Vendors

Top Affected Products