CWE-287— Improper Authentication
4,302 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 27 of 87
- CVE-2018-19999HIGHCVSS 7.8EG 7.82019-06-07
The local management interface in SolarWinds Serv-U FTP Server 15.1.6.25 has incorrect access controls that permit local users to bypass authentication in the application and execute code in the context of the Windows SYSTEM account, leadi…
- CVE-2018-20342MEDIUMCVSS 6.8EG 6.82018-12-21
The Floureon IP Camera SP012 provides a root terminal on a UART serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.
- CVE-2018-20422HIGHCVSS 8.1EG 8.12018-12-24
Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to bypass authentication by leveraging a non-empty #wechat#common_member_wechatmp to gain login access to an account via a plugin.php ac=wxregister request (the att…
- CVE-2018-20489MEDIUMCVSS 5.3EG 5.32019-12-30
An issue was discovered in GitLab Community and Enterprise Edition before 11.4.13, 11.5.x before 11.5.6, and 11.6.x before 11.6.1. It has Incorrect Access Control.
- CVE-2018-20675CRITICALCVSS 9.8EG 9.82019-01-09
D-Link DIR-822 C1 before v3.11B01Beta, DIR-822-US C1 before v3.11B01Beta, DIR-850L A* before v1.21B08Beta, DIR-850L B* before v2.22B03Beta, and DIR-880L A* before v1.20B02Beta devices allow authentication bypass.
- CVE-2018-20735HIGHCVSS 7.8EG 7.82019-01-17
An issue was discovered in BMC PATROL Agent through 11.3.01. It was found that the PatrolCli application can allow for lateral movement and escalation of privilege inside a Windows Active Directory environment. It was found that by default…
- CVE-2018-20888MEDIUMCVSS 5.5EG 5.52019-08-01
cPanel before 74.0.0 allows file modification in the context of the root account because of incorrect HTTP authentication (SEC-424).
- CVE-2018-20924MEDIUMCVSS 5.5EG 5.52019-08-01
cPanel before 70.0.23 allows arbitrary file-read and file-unlink operations via WHM style uploads (SEC-378).
- CVE-2018-20937MEDIUMCVSS 4.3EG 4.32019-08-01
cPanel before 68.0.27 does not validate database and dbuser names during renames (SEC-321).
- CVE-2018-20954HIGHCVSS 7.5EG 7.52019-08-08
The "Security and Privacy" Encryption feature in Mailpile before 1.0.0rc4 does not exclude disabled, revoked, and expired keys.
- CVE-2018-21038CRITICALCVSS 9.8EG 9.82020-04-08
An issue was discovered on Samsung mobile devices with N(7.x) software. The Secure Folder app's startup logic allows authentication bypass. The Samsung ID is SVE-2018-11628 (December 2018).
- CVE-2018-21062MEDIUMCVSS 4.6EG 4.62020-04-08
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. When biometric authentication is disabled, an attacker can view Streams content (e.g., a Gallery slideshow) of a locked Secure Folder via a connection to an…
- CVE-2018-21118HIGHCVSS 8.8EG 8.82020-04-22
NETGEAR XR500 devices before 2.3.2.32 are affected by authentication bypass.
- CVE-2018-21121HIGHCVSS 8.8EG 8.82020-04-22
Certain NETGEAR devices are affected by authentication bypass. This affects GS810EMX before 1.0.0.5, XS512EM before 1.0.0.6, and XS724EM before 1.0.0.6.
- CVE-2018-21125HIGHCVSS 8.8EG 8.82020-04-22
NETGEAR WAC510 devices before 5.0.0.17 are affected by authentication bypass.
- CVE-2018-21128HIGHCVSS 8.8EG 8.82020-04-22
Certain NETGEAR devices are affected by authentication bypass. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0.0.17.
- CVE-2018-21235HIGHCVSS 7.5EG 7.52020-06-04
An issue was discovered in Foxit E-mail advertising system before September 2018. It allows authentication bypass and information disclosure, related to Interspire Email Marketer.
- CVE-2018-21246CRITICALCVSS 9.8EG 9.82020-06-15
Caddy before 0.10.13 mishandles TLS client authentication, as demonstrated by an authentication bypass caused by the lack of the StrictHostMatching mode.
- CVE-2018-21263HIGHCVSS 8.8EG 8.82020-06-19
An issue was discovered in Mattermost Server before 4.7.0, 4.6.2, and 4.5.2. An attacker could authenticate to a different user's account via a crafted SAML response.
- CVE-2018-2449HIGHCVSS 8.6EG 8.62018-08-14
SAP SRM MDM Catalog versions 3.73, 7.31, 7.32 in (SAP NetWeaver 7.3) - import functionality does not perform authentication checks for valid repository user. This is an unauthenticated functionality that you can use on windows machines to …
- CVE-2018-2483MEDIUMCVSS 4.3EG 4.32018-11-13
HTTP Verb Tampering is possible in SAP BusinessObjects Business Intelligence Platform, versions 4.1 and 4.2, Central Management Console (CMC) by changing request method.
- CVE-2018-25030LOWCVSS 3.3EG 2.52022-03-28
A vulnerability classified as problematic has been found in Mirmay Secure Private Browser and File Manager up to 2.5. Affected is the Auto Lock. A race condition leads to a local authentication bypass. The exploit has been disclosed to the…
- CVE-2018-25043MEDIUMCVSS 5.0EG 8.82022-06-17
A vulnerability classified as critical was found in uTorrent. This vulnerability affects unknown code of the component PRNG. The manipulation leads to weak authentication. The attack can be initiated remotely. The exploit has been disclose…
- CVE-2018-25236CRITICALCVSS 9.8EG 9.82026-04-03
Hirschmann HiOS and HiSecOS products RSP, RSPE, RSPS, RSPL, MSP, EES, EESX, GRS, OS, RED, EAGLE contain an authentication bypass vulnerability in the HTTP(S) management module that allows unauthenticated remote attackers to gain administra…
- CVE-2018-3601CRITICALCVSS 9.8EG 9.82018-02-09
A password hash usage authentication bypass vulnerability in Trend Micro Control Manager 6.0 could allow a remote attacker to bypass authentication on vulnerable installations.
- CVE-2018-3696MEDIUMCVSS 5.5EG 5.52018-11-14
Authentication bypass in the Intel RAID Web Console 3 for Windows before 4.186 may allow an unprivileged user to potentially gain administrative privileges via local access.
- CVE-2018-3761HIGHCVSS 8.1EG 8.12018-07-05
Nextcloud Server before 12.0.8 and 13.0.3 suffer from improper authentication on the OAuth2 token endpoint. Missing checks potentially allowed handing out new tokens in case the OAuth2 client was partly compromised.
- CVE-2018-3775HIGHCVSS 8.8EG 8.82018-08-12
Improper Authentication in Nextcloud Server prior to version 12.0.3 would allow an attacker that obtained user credentials to bypass the 2 Factor Authentication.
- CVE-2018-3810CRITICALCVSS 9.8EG 9.82018-01-01
Authentication Bypass vulnerability in the Oturia Smart Google Code Inserter plugin before 3.5 for WordPress allows unauthenticated attackers to insert arbitrary JavaScript or HTML code (via the sgcgoogleanalytic parameter) that runs on al…
- CVE-2018-3815MEDIUMCVSS 5.7EG 5.72018-01-08
The "XML Interface to Messaging, Scheduling, and Signaling" (XIMSS) protocol implementation in CommuniGate Pro (CGP) 6.2 suffers from a Missing XIMSS Protocol Validation attack that leads to an email spoofing attack, allowing a malicious a…
- CVE-2018-3822CRITICALCVSS 9.8EG 9.82018-03-30
X-Pack Security versions 6.2.0, 6.2.1, and 6.2.2 are vulnerable to a user impersonation attack via incorrect XML canonicalization and DOM traversal. An attacker might have been able to impersonate a legitimate user if the SAML Identity Pro…
- CVE-2018-4064HIGHCVSS 7.1EG 7.12019-10-31
An exploitable unverified password change vulnerability exists in the ACEManager upload.cgi functionality of Sierra Wireless AirLink ES450 FW 4.9.3. A specially crafted HTTP request can cause a unverified device configuration change, resul…
- CVE-2018-4835MEDIUMCVSS 5.3EG 5.32018-01-25
A vulnerability has been identified in TeleControl Server Basic < V3.1. An attacker with network access to the TeleControl Server Basic's port 8000/tcp could bypass the authentication mechanism and read limited information.
- CVE-2018-4836HIGHCVSS 8.8EG 8.82018-01-25
A vulnerability has been identified in TeleControl Server Basic < V3.1. An authenticated attacker with a low-privileged account to the TeleControl Server Basic's port 8000/tcp could escalate his privileges and perform administrative operat…
- CVE-2018-4841CRITICALCVSS 9.8EG 9.82018-03-29
A vulnerability has been identified in TIM 1531 IRC (All versions < V1.1). A remote attacker with network access to port 80/tcp or port 443/tcp could perform administrative operations on the device without prior authentication. Successful …
- CVE-2018-4852CRITICALCVSS 9.8EG 9.82018-07-03
A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with network access to the device could potentially circumvent the authentication mechanism if he/she is able to obtain certa…
- CVE-2018-4856MEDIUMCVSS 4.9EG 4.92018-07-03
A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with administrative access to the device's management interface could lock out legitimate users. Manual interaction is requir…
- CVE-2018-5314HIGHCVSS 7.5EG 7.52018-03-01
Command injection vulnerability in Citrix NetScaler ADC and NetScaler Gateway 11.0 before build 70.16, 11.1 before build 55.13, and 12.0 before build 53.13; and the NetScaler Load Balancing instance distributed with NetScaler SD-WAN/CloudB…
- CVE-2018-5328CRITICALCVSS 9.8EG 9.82018-01-15
ZUUSE BEIMS ContractorWeb .NET 5.18.0.0 allows access to various /UserManagement/ privileged modules without authenticating the user; an attacker can misuse these functionalities to perform unauthorized actions, as demonstrated by Edit Use…
- CVE-2018-5387HIGHCVSS 7.5EG 7.52018-07-24
Wizkunde SAMLBase may incorrectly utilize the results of XML DOM traversal and canonicalization APIs in such a way that an attacker may be able to manipulate the SAML data without invalidating the cryptographic signature, allowing the atta…
- CVE-2018-5403HIGHCVSS 8.1EG 8.12019-01-10
Imperva SecureSphere gateway (GW) running v13, for both pre-First Time Login or post-First Time Login (FTL), if the attacker knows the basic authentication passwords, the GW may be vulnerable to RCE through specially crafted requests, from…
- CVE-2018-5451CRITICALCVSS 9.8EG 9.82018-03-28
In Philips Alice 6 System version R8.0.2 or prior, when an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct. This weakness can lead to the exposure of resources or functi…
- CVE-2018-5455CRITICALCVSS 9.8EG 9.82018-03-05
A Reliance on Cookies without Validation and Integrity Checking issue was discovered in Moxa OnCell G3100-HSPA Series version 1.4 Build 16062919 and prior. The application allows a cookie parameter to consist of only digits, allowing an at…
- CVE-2018-5459CRITICALCVSS 9.8EG 9.82018-02-13
An Improper Authentication issue was discovered in WAGO PFC200 Series 3S CoDeSys Runtime versions 2.3.X and 2.4.X. An attacker can execute different unauthenticated remote operations because of the CoDeSys Runtime application, which is ava…
- CVE-2018-5794MEDIUMCVSS 5.3EG 5.32018-02-05
An issue was discovered in Extreme Networks ExtremeWireless WiNG 5.x before 5.8.6.9 and 5.9.x before 5.9.1.3. There is No Authentication for the AeroScout Service via a crafted UDP packet.
- CVE-2018-6011HIGHCVSS 8.1EG 8.12018-11-01
The time-based one-time-password (TOTP) function in the application logic of the Green Electronics RainMachine Mini-8 (2nd generation) uses the administrator's password hash to generate a 6-digit temporary passcode that can be used for rem…
- CVE-2018-6020MEDIUMCVSS 6.5EG 6.52018-05-09
In Silex SX-500 all versions and GE MobileLink(GEH-500) version 1.54 and prior, authentication is not verified when making certain POST requests, which may allow attackers to modify system settings.
- CVE-2018-6180CRITICALCVSS 9.8EG 9.82018-02-08
A flaw in the profile section of Online Voting System 1.0 allows an unauthenticated user to set an arbitrary password for other accounts.
- CVE-2018-6294CRITICALCVSS 9.8EG 9.82018-03-13
Unsecured way of firmware update in Hanwha Techwin Smartcams
- CVE-2018-6299CRITICALCVSS 9.8EG 9.82018-03-13
Authentication bypass in Hanwha Techwin Smartcams
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →