Vulnerabilities

Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.

Filtering: Tag: cwe-287 Clear
ID Title
CVE-2015-1187 KEV [KEV] Authentication Bypass in D-link and trendnet d-link-and-trendnet (CVE-2015-1187)
authentication bypass in D-link and trendnet d-link-and-trendnet (CVE-2015-1187). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2019-0543 KEV [KEV] Authentication Bypass in Microsoft windows (CVE-2019-0543)
authentication bypass in Microsoft windows (CVE-2019-0543). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-36368 Authentication Bypass in openbsd (CVE-2021-36368)
authentication bypass in openbsd (CVE-2021-36368). Risk of unauthorized operations or information disclosure.
CVE-2022-23383 Authentication Bypass in yzmcms (CVE-2022-23383)
authentication bypass in yzmcms (CVE-2022-23383). Confidential information can be exposed externally.
CVE-2022-0715 Authentication Bypass in schneider-electric (CVE-2022-0715)
authentication bypass in schneider-electric (CVE-2022-0715). Data can be tampered with by attackers.
CVE-2022-23320 Authentication Bypass in xerox (CVE-2022-23320)
authentication bypass in xerox (CVE-2022-23320). Confidential information can be exposed externally.
CVE-2021-32648 KEV [KEV] Authentication Bypass in October cms october/system (CVE-2021-32648)
authentication bypass in October cms october/system (CVE-2021-32648). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited. Mitigation: upgrade to `1.1.5` or later.
CVE-2021-33766 KEV [KEV] Authentication Bypass in Microsoft exchange-server (CVE-2021-33766)
authentication bypass in Microsoft exchange-server (CVE-2021-33766). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-41716 Authentication Bypass in mahadiscom (CVE-2021-41716)
authentication bypass in mahadiscom (CVE-2021-41716). Successful exploitation can lead to full system takeover.
CVE-2020-12812 KEV [KEV] Vulnerability in Fortinet fortios (CVE-2020-12812)
vulnerability in Fortinet fortios (CVE-2020-12812). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2021-34523 KEV [KEV] Privilege Escalation in Microsoft exchange-server (CVE-2021-34523)
vulnerability in Microsoft exchange-server (CVE-2021-34523). Confidential information can be exposed externally. Listed in CISA KEV — actively exploited.
CVE-2020-0688 KEV [KEV] Authentication Bypass in Microsoft exchange-server (CVE-2020-0688)
authentication bypass in Microsoft exchange-server (CVE-2020-0688). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-22893 KEV [KEV] Authentication Bypass in Ivanti pulse-connect-secure (CVE-2021-22893)
authentication bypass in Ivanti pulse-connect-secure (CVE-2021-22893). Successful exploitation can lead to full system takeover. Listed in CISA KEV — actively exploited.
CVE-2020-5849 KEV [KEV] Authentication Bypass in unraid (CVE-2020-5849)
authentication bypass in unraid (CVE-2020-5849). Risk of unauthorized operations or information disclosure. Listed in CISA KEV — actively exploited.
CVE-2021-36949 Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability
Microsoft Azure Active Directory Connect Authentication Bypass Vulnerability
CVE-2021-22764 Authentication Bypass in schneider-electric (CVE-2021-22764)
authentication bypass in schneider-electric (CVE-2021-22764). Risk of unauthorized operations or information disclosure.
CVE-2021-29047 Authentication Bypass in liferay (CVE-2021-29047)
authentication bypass in liferay (CVE-2021-29047). Data can be tampered with by attackers.
CVE-2021-27990 Authentication Bypass in appspace (CVE-2021-27990)
authentication bypass in appspace (CVE-2021-27990). Confidential information can be exposed externally.
CVE-2021-26117 Authentication Bypass in apache (CVE-2021-26117)
authentication bypass in apache (CVE-2021-26117). Data can be tampered with by attackers.
CVE-2020-28874 Authentication Bypass in projectsend (CVE-2020-28874)
authentication bypass in projectsend (CVE-2020-28874). Data can be tampered with by attackers.
CVE-2020-3565 Vulnerability in cisco (CVE-2020-3565)
vulnerability in cisco (CVE-2020-3565). Risk of unauthorized operations or information disclosure.
CVE-2020-6988 Authentication Bypass in rockwellautomation (CVE-2020-6988)
authentication bypass in rockwellautomation (CVE-2020-6988). Confidential information can be exposed externally.
CVE-2019-1980 Vulnerability in cisco (CVE-2019-1980)
vulnerability in cisco (CVE-2019-1980). Risk of unauthorized operations or information disclosure.
CVE-2019-1946 Authentication Bypass in cisco (CVE-2019-1946)
authentication bypass in cisco (CVE-2019-1946). Risk of unauthorized operations or information disclosure.
CVE-2018-8859 Authentication Bypass in echelon (CVE-2018-8859)
authentication bypass in echelon (CVE-2018-8859). Successful exploitation can lead to full system takeover.
CVE-2014-0121 Authentication Bypass in hawt (CVE-2014-0121)
authentication bypass in hawt (CVE-2014-0121). Successful exploitation can lead to full system takeover.
CVE-2015-6237 Authentication Bypass in tripwire (CVE-2015-6237)
authentication bypass in tripwire (CVE-2015-6237). Successful exploitation can lead to full system takeover.
CVE-2015-7224 Authentication Bypass in puppet (CVE-2015-7224)
authentication bypass in puppet (CVE-2015-7224). Successful exploitation can lead to full system takeover.
CVE-2017-17777 Authentication Bypass in paid-to-read-script-project (CVE-2017-17777)
authentication bypass in paid-to-read-script-project (CVE-2017-17777). Successful exploitation can lead to full system takeover.
CVE-2017-17560 Authentication Bypass in westerndigital (CVE-2017-17560)
authentication bypass in westerndigital (CVE-2017-17560). Successful exploitation can lead to full system takeover.
CVE-2017-16684 Authentication Bypass in sap (CVE-2017-16684)
authentication bypass in sap (CVE-2017-16684). Successful exploitation can lead to full system takeover.
CVE-2017-16689 Authentication Bypass in sap (CVE-2017-16689)
authentication bypass in sap (CVE-2017-16689). Successful exploitation can lead to full system takeover.
CVE-2017-17430 Authentication Bypass in sangoma (CVE-2017-17430)
authentication bypass in sangoma (CVE-2017-17430). Successful exploitation can lead to full system takeover.
CVE-2017-17435 Authentication Bypass in vaulteksafe (CVE-2017-17435)
authentication bypass in vaulteksafe (CVE-2017-17435). Successful exploitation can lead to full system takeover.
CVE-2017-14018 Authentication Bypass in ethicon (CVE-2017-14018)
authentication bypass in ethicon (CVE-2017-14018). Data can be tampered with by attackers.
CVE-2017-16953 Authentication Bypass in zte (CVE-2017-16953)
authentication bypass in zte (CVE-2017-16953). Data can be tampered with by attackers.
CVE-2017-10903 Authentication Bypass in princeton (CVE-2017-10903)
authentication bypass in princeton (CVE-2017-10903). Successful exploitation can lead to full system takeover.
CVE-2017-14377 Authentication Bypass in apache (CVE-2017-14377)
authentication bypass in apache (CVE-2017-14377). Successful exploitation can lead to full system takeover.
CVE-2017-13872 Authentication Bypass in apple (CVE-2017-13872)
authentication bypass in apple (CVE-2017-13872). Successful exploitation can lead to full system takeover.
CVE-2017-9316 Authentication Bypass in dahuasecurity (CVE-2017-9316)
authentication bypass in dahuasecurity (CVE-2017-9316). Risk of unauthorized operations or information disclosure.
CVE-2017-0910 Authorization Flaw in zulip (CVE-2017-0910)
vulnerability in zulip (CVE-2017-0910). Successful exploitation can lead to full system takeover.
CVE-2017-8028 Authentication Bypass in pivotal-software (CVE-2017-8028)
authentication bypass in pivotal-software (CVE-2017-8028). Successful exploitation can lead to full system takeover.
CVE-2017-8214 Authentication Bypass in huawei (CVE-2017-8214)
authentication bypass in huawei (CVE-2017-8214). Successful exploitation can lead to full system takeover.
CVE-2017-8194 Authentication Bypass in huawei (CVE-2017-8194)
authentication bypass in huawei (CVE-2017-8194). Successful exploitation can lead to full system takeover.
CVE-2017-8195 Authentication Bypass in huawei (CVE-2017-8195)
authentication bypass in huawei (CVE-2017-8195). Successful exploitation can lead to full system takeover.
CVE-2017-8151 Authentication Bypass in huawei (CVE-2017-8151)
authentication bypass in huawei (CVE-2017-8151). Successful exploitation can lead to full system takeover.
CVE-2017-2738 Authentication Bypass in huawei (CVE-2017-2738)
authentication bypass in huawei (CVE-2017-2738). Successful exploitation can lead to full system takeover.
CVE-2017-2721 Authentication Bypass in huawei (CVE-2017-2721)
authentication bypass in huawei (CVE-2017-2721). Data can be tampered with by attackers.
CVE-2017-8861 Authentication Bypass in cohuhd (CVE-2017-8861)
authentication bypass in cohuhd (CVE-2017-8861). Successful exploitation can lead to full system takeover.
CVE-2017-16613 Authentication Bypass in swauth (CVE-2017-16613)
authentication bypass in swauth (CVE-2017-16613). Successful exploitation can lead to full system takeover. Mitigation: upgrade to `70af7986265a3defea054c46efc82d0698917298, 1.3.0` or later.

🍪 About cookies

We use cookies to keep you logged in, remember your language, and improve the service.

Details →