Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2015-1187 KEV |
|
[KEV] Authentication Bypass in D-link and trendnet d-link-and-trendnet (CVE-2015-1187)
authentication bypass in D-link and trendnet d-link-and-trendnet (CVE-2015-1187). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2019-0543 KEV |
|
[KEV] Authentication Bypass in Microsoft windows (CVE-2019-0543)
authentication bypass in Microsoft windows (CVE-2019-0543). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-36368 |
|
Authentication Bypass in openbsd (CVE-2021-36368)
authentication bypass in openbsd (CVE-2021-36368). Risk of unauthorized operations or information disclosure.
|
| CVE-2022-23383 |
|
Authentication Bypass in yzmcms (CVE-2022-23383)
authentication bypass in yzmcms (CVE-2022-23383). Confidential information can be exposed externally.
|
| CVE-2022-0715 |
|
Authentication Bypass in schneider-electric (CVE-2022-0715)
authentication bypass in schneider-electric (CVE-2022-0715). Data can be tampered with by attackers.
|
| CVE-2022-23320 |
|
Authentication Bypass in xerox (CVE-2022-23320)
authentication bypass in xerox (CVE-2022-23320). Confidential information can be exposed externally.
|
| CVE-2021-32648 KEV |
|
[KEV] Authentication Bypass in October cms october/system (CVE-2021-32648)
authentication bypass in October cms october/system (CVE-2021-32648). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `1.1.5` or later.
|
| CVE-2021-33766 KEV |
|
[KEV] Authentication Bypass in Microsoft exchange-server (CVE-2021-33766)
authentication bypass in Microsoft exchange-server (CVE-2021-33766). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-41716 |
|
Authentication Bypass in mahadiscom (CVE-2021-41716)
authentication bypass in mahadiscom (CVE-2021-41716). Successful exploitation can lead to full system takeover.
|
| CVE-2020-12812 KEV |
|
[KEV] Vulnerability in Fortinet fortios (CVE-2020-12812)
vulnerability in Fortinet fortios (CVE-2020-12812). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2021-34523 KEV |
|
[KEV] Privilege Escalation in Microsoft exchange-server (CVE-2021-34523)
vulnerability in Microsoft exchange-server (CVE-2021-34523). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
|
| CVE-2020-0688 KEV |
|
[KEV] Authentication Bypass in Microsoft exchange-server (CVE-2020-0688)
authentication bypass in Microsoft exchange-server (CVE-2020-0688). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-22893 KEV |
|
[KEV] Authentication Bypass in Ivanti pulse-connect-secure (CVE-2021-22893)
authentication bypass in Ivanti pulse-connect-secure (CVE-2021-22893). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
|
| CVE-2020-5849 KEV |
|
[KEV] Authentication Bypass in unraid (CVE-2020-5849)
authentication bypass in unraid (CVE-2020-5849). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
|
| CVE-2021-36949 |
|
Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability
Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability
|
| CVE-2021-22764 |
|
Authentication Bypass in schneider-electric (CVE-2021-22764)
authentication bypass in schneider-electric (CVE-2021-22764). Risk of unauthorized operations or information disclosure.
|
| CVE-2021-29047 |
|
Authentication Bypass in liferay (CVE-2021-29047)
authentication bypass in liferay (CVE-2021-29047). Data can be tampered with by attackers.
|
| CVE-2021-27990 |
|
Authentication Bypass in appspace (CVE-2021-27990)
authentication bypass in appspace (CVE-2021-27990). Confidential information can be exposed externally.
|
| CVE-2021-26117 |
|
Authentication Bypass in apache (CVE-2021-26117)
authentication bypass in apache (CVE-2021-26117). Data can be tampered with by attackers.
|
| CVE-2020-28874 |
|
Authentication Bypass in projectsend (CVE-2020-28874)
authentication bypass in projectsend (CVE-2020-28874). Data can be tampered with by attackers.
|
| CVE-2020-3565 |
|
Vulnerability in cisco (CVE-2020-3565)
vulnerability in cisco (CVE-2020-3565). Risk of unauthorized operations or information disclosure.
|
| CVE-2020-6988 |
|
Authentication Bypass in rockwellautomation (CVE-2020-6988)
authentication bypass in rockwellautomation (CVE-2020-6988). Confidential information can be exposed externally.
|
| CVE-2019-1980 |
|
Vulnerability in cisco (CVE-2019-1980)
vulnerability in cisco (CVE-2019-1980). Risk of unauthorized operations or information disclosure.
|
| CVE-2019-1946 |
|
Authentication Bypass in cisco (CVE-2019-1946)
authentication bypass in cisco (CVE-2019-1946). Risk of unauthorized operations or information disclosure.
|
| CVE-2018-8859 |
|
Authentication Bypass in echelon (CVE-2018-8859)
authentication bypass in echelon (CVE-2018-8859). Successful exploitation can lead to full system takeover.
|
| CVE-2014-0121 |
|
Authentication Bypass in hawt (CVE-2014-0121)
authentication bypass in hawt (CVE-2014-0121). Successful exploitation can lead to full system takeover.
|
| CVE-2015-6237 |
|
Authentication Bypass in tripwire (CVE-2015-6237)
authentication bypass in tripwire (CVE-2015-6237). Successful exploitation can lead to full system takeover.
|
| CVE-2015-7224 |
|
Authentication Bypass in puppet (CVE-2015-7224)
authentication bypass in puppet (CVE-2015-7224). Successful exploitation can lead to full system takeover.
|
| CVE-2017-17777 |
|
Authentication Bypass in paid-to-read-script-project (CVE-2017-17777)
authentication bypass in paid-to-read-script-project (CVE-2017-17777). Successful exploitation can lead to full system takeover.
|
| CVE-2017-17560 |
|
Authentication Bypass in westerndigital (CVE-2017-17560)
authentication bypass in westerndigital (CVE-2017-17560). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16684 |
|
Authentication Bypass in sap (CVE-2017-16684)
authentication bypass in sap (CVE-2017-16684). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16689 |
|
Authentication Bypass in sap (CVE-2017-16689)
authentication bypass in sap (CVE-2017-16689). Successful exploitation can lead to full system takeover.
|
| CVE-2017-17430 |
|
Authentication Bypass in sangoma (CVE-2017-17430)
authentication bypass in sangoma (CVE-2017-17430). Successful exploitation can lead to full system takeover.
|
| CVE-2017-17435 |
|
Authentication Bypass in vaulteksafe (CVE-2017-17435)
authentication bypass in vaulteksafe (CVE-2017-17435). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14018 |
|
Authentication Bypass in ethicon (CVE-2017-14018)
authentication bypass in ethicon (CVE-2017-14018). Data can be tampered with by attackers.
|
| CVE-2017-16953 |
|
Authentication Bypass in zte (CVE-2017-16953)
authentication bypass in zte (CVE-2017-16953). Data can be tampered with by attackers.
|
| CVE-2017-10903 |
|
Authentication Bypass in princeton (CVE-2017-10903)
authentication bypass in princeton (CVE-2017-10903). Successful exploitation can lead to full system takeover.
|
| CVE-2017-14377 |
|
Authentication Bypass in apache (CVE-2017-14377)
authentication bypass in apache (CVE-2017-14377). Successful exploitation can lead to full system takeover.
|
| CVE-2017-13872 |
|
Authentication Bypass in apple (CVE-2017-13872)
authentication bypass in apple (CVE-2017-13872). Successful exploitation can lead to full system takeover.
|
| CVE-2017-9316 |
|
Authentication Bypass in dahuasecurity (CVE-2017-9316)
authentication bypass in dahuasecurity (CVE-2017-9316). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-0910 |
|
Authorization Flaw in zulip (CVE-2017-0910)
vulnerability in zulip (CVE-2017-0910). Successful exploitation can lead to full system takeover.
|
| CVE-2017-8028 |
|
Authentication Bypass in pivotal-software (CVE-2017-8028)
authentication bypass in pivotal-software (CVE-2017-8028). Successful exploitation can lead to full system takeover.
|
| CVE-2017-8214 |
|
Authentication Bypass in huawei (CVE-2017-8214)
authentication bypass in huawei (CVE-2017-8214). Successful exploitation can lead to full system takeover.
|
| CVE-2017-8194 |
|
Authentication Bypass in huawei (CVE-2017-8194)
authentication bypass in huawei (CVE-2017-8194). Successful exploitation can lead to full system takeover.
|
| CVE-2017-8195 |
|
Authentication Bypass in huawei (CVE-2017-8195)
authentication bypass in huawei (CVE-2017-8195). Successful exploitation can lead to full system takeover.
|
| CVE-2017-8151 |
|
Authentication Bypass in huawei (CVE-2017-8151)
authentication bypass in huawei (CVE-2017-8151). Successful exploitation can lead to full system takeover.
|
| CVE-2017-2738 |
|
Authentication Bypass in huawei (CVE-2017-2738)
authentication bypass in huawei (CVE-2017-2738). Successful exploitation can lead to full system takeover.
|
| CVE-2017-2721 |
|
Authentication Bypass in huawei (CVE-2017-2721)
authentication bypass in huawei (CVE-2017-2721). Data can be tampered with by attackers.
|
| CVE-2017-8861 |
|
Authentication Bypass in cohuhd (CVE-2017-8861)
authentication bypass in cohuhd (CVE-2017-8861). Successful exploitation can lead to full system takeover.
|
| CVE-2017-16613 |
|
Authentication Bypass in swauth (CVE-2017-16613)
authentication bypass in swauth (CVE-2017-16613). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `70af7986265a3defea054c46efc82d0698917298, 1.3.0` or later.
|