CWE-287— Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.— MITRE CWE catalog
4,929 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 27 of 99
- CVE-2017-5237HIGHCVSS 7.5EG 7.52017-03-27
Due to a lack of authentication, an unauthenticated user who knows the Eview EV-07S GPS Tracker's phone number can revert the device to a factory default configuration with an SMS command, "RESET!"
- CVE-2017-5554HIGHCVSS 8.1EG 8.12017-01-23
An issue was discovered in ABOOT in OnePlus 3 and 3T OxygenOS before 4.0.2. The attacker can reboot the device into the fastboot mode, which could be done without any authentication. A physical attacker can press the "Volume Up" button dur…
- CVE-2017-5619CRITICALCVSS 9.8EG 9.82017-03-13
An issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1. Attackers can login with the hashed password itself (e.g., from the DB) instead of the valid password string.
- CVE-2017-5635HIGHCVSS 7.5EG 7.52017-10-19
In Apache NiFi before 0.7.2 and 1.x before 1.1.2 in a cluster environment, if an anonymous user request is replicated to another node, the originating node identity is used rather than the "anonymous" user.
- CVE-2017-5640CRITICALCVSS 9.8EG 9.82017-07-10
It was noticed that a malicious process impersonating an Impala daemon in Apache Impala (incubating) 2.7.0 to 2.8.0 could cause Impala daemons to skip authentication checks when Kerberos is enabled (but TLS is not). If the malicious server…
- CVE-2017-5791CRITICALCVSS 9.8EG 9.82017-10-11
The doFilter method in UrlAccessController in HPE Intelligent Management Center (iMC) PLAT 7.2 E0403P06 allows remote bypass of authentication via unspecified strings in a URI.
- CVE-2017-6034CRITICALCVSS 9.8EG 9.82017-06-30
An authentication bypass by capture-replay issue was discovered in Schneider Electric Modicon Modbus Protocol. Sensitive information is transmitted in cleartext in the Modicon Modbus protocol, which may allow an attacker to replay the foll…
- CVE-2017-6047CRITICALCVSS 9.8EG 9.82019-04-02
Detcon Sitewatch Gateway, all versions without cellular, Passwords are presented in plaintext in a file that is accessible without authentication.
- CVE-2017-6049HIGHCVSS 7.5EG 7.52019-04-02
Detcon Sitewatch Gateway, all versions without cellular, an attacker can edit settings on the device using a specially crafted URL.
- CVE-2017-6062HIGHCVSS 8.6EG 8.62017-03-02
The "OpenID Connect Relying Party and OAuth 2.0 Resource Server" (aka mod_auth_openidc) module before 2.1.5 for the Apache HTTP Server does not skip OIDC_CLAIM_ and OIDCAuthNHeader headers in an "OIDCUnAuthAction pass" configuration, which…
- CVE-2017-6104HIGHCVSS 7.5EG 7.52017-03-02
Remote file upload vulnerability in Wordpress Plugin Mobile App Native 3.0.
- CVE-2017-6199CRITICALCVSS 9.8EG 9.82018-02-06
A remote attacker could bypass the Sandstorm organization restriction before build 0.203 via a comma in an email-address field.
- CVE-2017-6343HIGHCVSS 8.1EG 8.62017-02-27
The web interface on Dahua DHI-HCVR7216A-S3 devices with NVR Firmware 3.210.0001.10 2016-06-06, Camera Firmware 2.400.0000.28.R 2016-03-29, and SmartPSS Software 1.16.1 2017-01-19 allows remote attackers to obtain login access by leveragin…
- CVE-2017-6413HIGHCVSS 8.6EG 8.62017-03-02
The "OpenID Connect Relying Party and OAuth 2.0 Resource Server" (aka mod_auth_openidc) module before 2.1.6 for the Apache HTTP Server does not skip OIDC_CLAIM_ and OIDCAuthNHeader headers in an "AuthType oauth20" configuration, which allo…
- CVE-2017-6526CRITICALCVSS 9.8EG 9.82017-03-09
An issue was discovered in dnaTools dnaLIMS 4-2015s13. dnaLIMS is vulnerable to unauthenticated command execution through an improperly protected administrative web shell (cgi-bin/dna/sysAdmin.cgi POST requests).
- CVE-2017-6530CRITICALCVSS 9.8EG 9.82017-07-20
Televes COAXDATA GATEWAY 1Gbps devices doc-wifi-hgw_v1.02.0014 4.20 do not check password.shtml authorization, leading to Arbitrary password change.
- CVE-2017-6549HIGHCVSS 8.8EG 8.82017-03-09
Session hijack vulnerability in httpd on ASUS RT-N56U, RT-N66U, RT-AC66U, RT-N66R, RT-AC66R, RT-AC68U, RT-AC68R, RT-N66W, RT-AC66W, RT-AC87R, RT-AC87U, RT-AC51U, RT-AC68P, RT-N11P, RT-N12+, RT-N12E B1, RT-AC3200, RT-AC53U, RT-AC1750, RT-AC…
- CVE-2017-6617MEDIUMCVSS 5.4EG 5.42017-04-20
A vulnerability in the session identification management functionality of the web-based GUI of Cisco Integrated Management Controller (IMC) 3.0(1c) could allow an unauthenticated, remote attacker to hijack a valid user session on an affect…
- CVE-2017-6624MEDIUMCVSS 5.3EG 5.32017-05-03
A vulnerability in Cisco IOS 15.5(3)M Software for Cisco CallManager Express (CME) could allow an unauthenticated, remote attacker to make unauthorized phone calls. The vulnerability is due to a configuration restriction in the toll-fraud …
- CVE-2017-6703MEDIUMCVSS 5.9EG 5.92017-07-04
A vulnerability in the web application in the Cisco Prime Collaboration Provisioning tool could allow an unauthenticated, remote attacker to hijack another user's session. More Information: CSCvc90346. Known Affected Releases: 12.1.
- CVE-2017-6711CRITICALCVSS 9.1EG 9.12017-07-06
A vulnerability in the Ultra Automation Service (UAS) of the Cisco Ultra Services Framework could allow an unauthenticated, remote attacker to gain unauthorized access to a targeted device. The vulnerability is due to an insecure default c…
- CVE-2017-6722MEDIUMCVSS 6.1EG 6.12017-07-04
A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) service of Cisco Unified Contact Center Express (UCCx) could allow an unauthenticated, remote attacker to masquerade as a legitimate user, aka a Clear Text Authentica…
- CVE-2017-6747CRITICALCVSS 9.8EG 9.82017-08-07
A vulnerability in the authentication module of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass local authentication. The vulnerability is due to improper handling of authentication requests a…
- CVE-2017-6781MEDIUMCVSS 5.3EG 5.32017-08-17
A vulnerability in the management of shell user accounts for Cisco Policy Suite (CPS) Software for CPS appliances could allow an authenticated, local attacker to gain elevated privileges on an affected system. The affected privilege level …
- CVE-2017-6868HIGHCVSS 8.1EG 8.12017-07-07
An Improper Authentication issue was discovered in Siemens SIMATIC CP 44x-1 RNA, all versions prior to 1.4.1. An unauthenticated remote attacker may be able to perform administrative actions on the Communication Process (CP) of the RNA ser…
- CVE-2017-6869CRITICALCVSS 9.8EG 9.82017-08-08
A vulnerability was discovered in Siemens ViewPort for Web Office Portal before revision number 1453 that could allow an unauthenticated remote user to upload arbitrary code and execute it with the permissions of the operating-system user …
- CVE-2017-6871MEDIUMCVSS 5.4EG 5.42017-08-08
A vulnerability was discovered in Siemens SIMATIC WinCC Sm@rtClient for Android (All versions before V1.0.2.2) and SIMATIC WinCC Sm@rtClient for Android Lite (All versions before V1.0.2.2). An attacker with physical access to an unlocked m…
- CVE-2017-6967HIGHCVSS 7.3EG 7.32017-03-17
xrdp 0.9.1 calls the PAM function auth_start_session() in an incorrect location, leading to PAM session modules not being properly initialized, with a potential consequence of incorrect configurations or elevation of privileges, aka a pam_…
- CVE-2017-7284HIGHCVSS 8.8EG 8.82017-04-12
An attacker that has hijacked a Unitrends Enterprise Backup (before 9.1.2) web server session can leverage api/includes/users.php to change the password of the logged in account without knowing the current password. This allows for an acco…
- CVE-2017-7314HIGHCVSS 7.5EG 7.52017-06-07
An issue was discovered in Personify360 e-Business 7.5.2 through 7.6.1. When going to the /TabId/275 URI, while creating a new role, a list of database tables and their columns is available.
- CVE-2017-7405CRITICALCVSS 9.8EG 9.82017-07-07
On the D-Link DIR-615 before v20.12PTb04, once authenticated, this device identifies the user based on the IP address of his machine. By spoofing the IP address belonging to the victim's host, an attacker might be able to take over the adm…
- CVE-2017-7420CRITICALCVSS 9.8EG 9.82017-08-21
An Authentication Bypass (CWE-287) vulnerability in ESMAC (aka Enterprise Server Monitor and Control) in Micro Focus Enterprise Developer and Enterprise Server 2.3 and earlier, 2.3 Update 1 before Hotfix 8, and 2.3 Update 2 before Hotfix 9…
- CVE-2017-7450CRITICALCVSS 9.8EG 9.82017-04-05
AIRTAME HDMI dongle with firmware before 2.2.0 allows unauthenticated access to a big part of the management interface. It is possible to extract all information including the Wi-Fi password, reboot, or force a software update at an arbitr…
- CVE-2017-7546CRITICALCVSS 9.8EG 9.82017-08-16
PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to incorrect authentication flaw allowing remote attackers to gain access to database accounts with an empty password.
- CVE-2017-7557HIGHCVSS 8.8EG 8.82017-08-22
dnsdist version 1.1.0 is vulnerable to a flaw in authentication mechanism for REST API potentially allowing CSRF attack.
- CVE-2017-7562MEDIUMCVSS 6.5EG 6.52018-07-26
An authentication bypass flaw was found in the way krb5's certauth interface before 1.16.1 handled the validation of client certificates. A remote attacker able to communicate with the KDC could potentially use this flaw to impersonate arb…
- CVE-2017-7588CRITICALCVSS 9.8EG 9.82017-04-12
On certain Brother devices, authorization is mishandled by including a valid AuthCookie cookie in the HTTP response to a failed login attempt. Affected models are: MFC-J6973CDW MFC-J4420DW MFC-8710DW MFC-J4620DW MFC-L8850CDW MFC-J3720 MFC-…
- CVE-2017-7638MEDIUMCVSS 6.5EG 6.52018-03-08
QNAP NAS application Media Streaming add-on version 421.1.0.2, 430.1.2.0, and earlier does not authenticate requests properly. Successful exploitation could lead to change of the Media Streaming settings, and leakage of sensitive informati…
- CVE-2017-7639MEDIUMCVSS 5.3EG 5.32018-06-05
QNAP NAS application Proxy Server through version 1.2.0 does not authenticate requests properly. Successful exploitation can lead to change of the settings of Proxy Server.
- CVE-2017-7649CRITICALCVSS 9.8EG 9.82017-09-11
The network enabled distribution of Kura before 2.1.0 takes control over the device's firewall setup but does not allow IPv6 firewall rules to be configured. Still the Equinox console port 5002 is left open, allowing to log into Kura witho…
- CVE-2017-7650MEDIUMCVSS 6.5EG 6.52017-09-11
In Mosquitto before 1.4.12, pattern based ACLs can be bypassed by clients that set their username/client id to '#' or '+'. This allows locally or remotely connected clients to access MQTT topics that they do have the rights to. The same is…
- CVE-2017-7660HIGHCVSS 7.5EG 7.52017-07-07
Apache Solr uses a PKI based mechanism to secure inter-node communication when security is enabled. It is possible to create a specially crafted node name that does not exist as part of the cluster and point it to a malicious node. This ca…
- CVE-2017-7909CRITICALCVSS 9.8EG 9.82017-05-06
A Use of Client-Side Authentication issue was discovered in Advantech B+B SmartWorx MESR901 firmware versions 1.5.2 and prior. The web interface uses JavaScript to check client authentication and redirect unauthorized users. Attackers may …
- CVE-2017-7912CRITICALCVSS 9.8EG 9.82019-04-08
Hanwha Techwin SRN-4000, SRN-4000 firmware versions prior to SRN4000_v2.16_170401, A specially crafted http request and response could allow an attacker to gain access to the device management page with admin privileges without proper auth…
- CVE-2017-7919CRITICALCVSS 9.8EG 9.82017-07-03
An Improper Authentication issue was discovered in Newport XPS-Cx and XPS-Qx. An attacker may bypass authentication by accessing a specific uniform resource locator (URL).
- CVE-2017-7920HIGHCVSS 7.5EG 7.52017-08-07
An Improper Authentication issue was discovered in ABB VSN300 WiFi Logger Card versions 1.8.15 and prior, and VSN300 WiFi Logger Card for React versions 2.1.3 and prior. By accessing a specific uniform resource locator (URL) on the web ser…
- CVE-2017-7921CRITICALCVSS 9.8EG 10.0⚠ KEV2017-05-06
An Improper Authentication issue was discovered in Hikvision DS-2CD2xx2F-I Series V5.2.0 build 140721 to V5.4.0 build 160530, DS-2CD2xx0F-I Series V5.2.0 build 140721 to V5.4.0 Build 160401, DS-2CD2xx2FWD Series V5.3.1 build 150410 to V5.4…
- CVE-2017-7930HIGHCVSS 7.4EG 7.42017-08-25
An Improper Authentication issue was discovered in OSIsoft PI Server 2017 PI Data Archive versions prior to 2017. PI Data Archive has protocol flaws with the potential to expose change records in the clear and allow a malicious party to sp…
- CVE-2017-7931CRITICALCVSS 9.8EG 9.82018-06-06
In ABB IP GATEWAY 3.39 and prior, by accessing a specific uniform resource locator (URL) on the web server, a malicious user is able to access the configuration files and application pages without authentication.
- CVE-2017-7934MEDIUMCVSS 5.9EG 5.92017-08-25
An Improper Authentication issue was discovered in OSIsoft PI Server 2017 PI Data Archive versions prior to 2017. PI Network Manager using older protocol versions contains a flaw that could allow a malicious user to authenticate with a ser…
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →