CWE-287— Improper Authentication
4,302 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 29 of 87
- CVE-2018-9032CRITICALCVSS 9.8EG 9.82018-03-27
An authentication bypass vulnerability on D-Link DIR-850L Wireless AC1200 Dual Band Gigabit Cloud Router (Hardware Version : A1, B1; Firmware Version : 1.02-2.06) devices potentially allows attackers to bypass SharePort Web Access Portal b…
- CVE-2018-9080MEDIUMCVSS 5.9EG 5.92018-09-28
For some Iomega, Lenovo, LenovoEMC NAS devices versions 4.1.402.34662 and earlier, by setting the Iomega cookie to a known value before logging into the NAS's web application, the NAS will not provide the user a new cookie value. This allo…
- CVE-2018-9105HIGHCVSS 8.8EG 8.82018-03-27
NordVPN 3.3.10 for macOS suffers from a root privilege escalation vulnerability. The vulnerability stems from its privileged helper tool's implemented XPC service. This XPC service is responsible for receiving and processing new OpenVPN co…
- CVE-2018-9148CRITICALCVSS 9.8EG 9.82018-03-30
Western Digital WD My Cloud v04.05.00-320 devices embed the session token (aka PHPSESSID) in filenames, which makes it easier for attackers to bypass authentication by listing a directory. NOTE: this can be exploited in conjunction with CV…
- CVE-2018-9232HIGHCVSS 7.8EG 7.82018-05-01
Due to the lack of firmware authentication in the upgrade process of T&W WIFI Repeater BE126 devices, an attacker can craft a malicious firmware and use it as an update.
- CVE-2018-9248CRITICALCVSS 9.8EG 9.82018-04-04
FiberHome VDSL2 Modem HG 150-UB devices allow authentication bypass via a "Cookie: Name=0admin" header.
- CVE-2018-9249CRITICALCVSS 9.8EG 9.82018-04-04
FiberHome VDSL2 Modem HG 150-UB devices allow authentication bypass by ignoring the parent.location='login.html' JavaScript code in the response to an unauthenticated request.
- CVE-2019-0282MEDIUMCVSS 5.3EG 5.32019-04-10
Several web pages in SAP NetWeaver Process Integration (Runtime Workbench), fixed in versions 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50; can be accessed without user authentication, which might expose internal data like release information, Jav…
- CVE-2019-0543HIGHCVSS 7.8EG 9.0⚠ KEV2019-01-08
An elevation of privilege vulnerability exists when Windows improperly handles authentication requests, aka "Microsoft Windows Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows S…
- CVE-2019-0622MEDIUMCVSS 4.6EG 4.62019-01-08
An elevation of privilege vulnerability exists when Skype for Andriod fails to properly handle specific authentication requests, aka "Skype for Android Elevation of Privilege Vulnerability." This affects Skype 8.35.
- CVE-2019-10150MEDIUMCVSS 5.9EG 5.92019-06-12
It was found that OpenShift Container Platform versions 3.6.x - 4.6.0 does not perform SSH Host Key checking when using ssh key authentication during builds. An attacker, with the ability to redirect network traffic, could use this to alte…
- CVE-2019-10157MEDIUMCVSS 4.7EG 4.72019-06-12
It was found that Keycloak's Node.js adapter before version 4.8.3 did not properly verify the web token received from the server in its backchannel logout . An attacker with local access could use this to construct a malicious web token se…
- CVE-2019-1020018HIGHCVSS 7.3EG 7.32019-07-29
Discourse before 2.3.0 and 2.4.x before 2.4.0.beta3 lacks a confirmation screen when logging in via an email link.
- CVE-2019-10273MEDIUMCVSS 4.3EG 4.32019-04-04
Information leakage vulnerability in the /mc login page in ManageEngine ServiceDesk Plus 9.3 software allows authenticated users to enumerate active users. Due to a flaw within the way the authentication is handled, an attacker is able to …
- CVE-2019-10562HIGHCVSS 7.8EG 7.82020-09-08
u'Improper authentication and signature verification of debug polices in secure boot loader will allow unverified debug policies to be loaded into secure memory and leads to memory corruption' in Snapdragon Auto, Snapdragon Compute, Snapdr…
- CVE-2019-10643CRITICALCVSS 9.8EG 9.82019-04-17
Contao 4.7 allows Use of a Key Past its Expiration Date.
- CVE-2019-10661CRITICALCVSS 9.8EG 9.82019-03-30
On Grandstream GXV3611IR_HD before 1.0.3.23 devices, the root account lacks a password.
- CVE-2019-10689MEDIUMCVSS 6.5EG 6.52019-06-24
VVX products using UCS software version 5.9.2 and earlier with Better Together over Ethernet Connector (BToE) application version 3.9.1 and earlier provides insufficient authentication between the BToE application and the BToE component, r…
- CVE-2019-10884HIGHCVSS 8.8EG 8.82019-04-05
Uniqkey Password Manager 1.14 contains a vulnerability because it fails to recognize the difference between domains and sub-domains. The vulnerability means that passwords saved for example.com will be recommended for usersite.example.com.…
- CVE-2019-10911HIGHCVSS 7.5EG 7.52019-05-16
In Symfony before 2.7.51, 2.8.x before 2.8.50, 3.x before 3.4.26, 4.x before 4.1.12, and 4.2.x before 4.2.7, a vulnerability would allow an attacker to authenticate as a privileged user on sites with user registration and remember me login…
- CVE-2019-10964HIGHCVSS 7.1EG 7.12019-06-28
Medtronic MiniMed Insulin Pumps are designed to communicate using a wireless RF with other devices, such as blood glucose meters, glucose sensor transmitters, and CareLink USB devices. This wireless RF communication protocol does not pro…
- CVE-2019-10966MEDIUMCVSS 5.3EG 5.32019-07-10
In GE Aestiva and Aespire versions 7100 and 7900, a vulnerability exists where serial devices are connected via an added unsecured terminal server to a TCP/IP network configuration, which could allow an attacker to remotely modify device c…
- CVE-2019-10998MEDIUMCVSS 6.8EG 6.82019-06-18
An issue was discovered on Phoenix Contact AXC F 2152 (No.2404267) before 2019.0 LTS and AXC F 2152 STARTERKIT (No.1046568) before 2019.0 LTS devices. Unlimited physical access to the PLC may lead to a manipulation of SD cards data. SD car…
- CVE-2019-11015MEDIUMCVSS 6.8EG 6.82019-04-18
A vulnerability was found in the MIUI OS version 10.1.3.0 that allows a physically proximate attacker to bypass Lockscreen based authentication via the Wallpaper Carousel application to obtain sensitive Clipboard data and the user's stored…
- CVE-2019-11018CRITICALCVSS 9.8EG 9.82019-04-08
application\admin\controller\User.php in ThinkAdmin V4.0 does not prevent continued use of an administrator's cookie-based credentials after a password change.
- CVE-2019-11064CRITICALCVSS 9.8EG 9.82019-08-29
A vulnerability of remote credential disclosure was discovered in Advan VD-1 firmware versions up to 230. An attacker can export system configuration which is not encrypted to get the administrator’s account and password in plain text vi…
- CVE-2019-11081CRITICALCVSS 9.8EG 9.82019-04-24
A default username and password in Dentsply Sirona Sidexis 4.3.1 and earlier allows an attacker to gain administrative access to the application server.
- CVE-2019-11170HIGHCVSS 7.8EG 7.82019-11-14
Authentication bypass in Intel(R) Baseboard Management Controller firmware may allow an unauthenticated user to potentially enable information disclosure, escalation of privilege and/or denial of service via local access.
- CVE-2019-11187CRITICALCVSS 9.8EG 9.82019-08-15
Incorrect Access Control in the LDAP class of GONICUS GOsa through 2019-04-11 allows an attacker to log into any account with a username containing the case-insensitive substring "success" when an arbitrary password is provided.
- CVE-2019-11202CRITICALCVSS 9.8EG 9.82019-07-30
An issue was discovered that affects the following versions of Rancher: v2.0.0 through v2.0.13, v2.1.0 through v2.1.8, and v2.2.0 through 2.2.1. When Rancher starts for the first time, it creates a default admin user with a well-known pass…
- CVE-2019-11232CRITICALCVSS 9.8EG 9.82019-06-19
EXCELLENT INFOTEK BiYan v1.57 ~ v2.8 allows an attacker to leak user information (Password) without being authenticated, by sending an EMP_NO element to the kws_login/asp/query_user.asp URI, and then reading the PWD element.
- CVE-2019-11234CRITICALCVSS 9.8EG 9.82019-04-22
FreeRADIUS before 3.0.19 does not prevent use of reflection for authentication spoofing, aka a "Dragonblood" issue, a similar issue to CVE-2019-9497.
- CVE-2019-11272HIGHCVSS 7.3EG 7.32019-06-26
Spring Security, versions 4.2.x up to 4.2.12, and older unsupported versions support plain text passwords using PlaintextPasswordEncoder. If an application using an affected version of Spring Security is leveraging PlaintextPasswordEncoder…
- CVE-2019-11488HIGHCVSS 8.1EG 8.12019-04-25
Incorrect Access Control in the Account Access / Password Reset Link in SimplyBook.me Enterprise before 2019-04-23 allows Unauthorized Attackers to READ/WRITE Customer or Administrator data via a persistent HTTP GET Request Hash Link Repla…
- CVE-2019-11576CRITICALCVSS 9.8EG 9.82019-04-28
Gitea before 1.8.0 allows 1FA for user accounts that have completed 2FA enrollment. If a user's credentials are known, then an attacker could send them to the API without requiring the 2FA one-time password.
- CVE-2019-11733CRITICALCVSS 9.8EG 9.82019-09-27
When a master password is set, it is required to be entered again before stored passwords can be accessed in the 'Saved Logins' dialog. It was found that locally stored passwords can be copied to the clipboard thorough the 'copy password' …
- CVE-2019-12254CRITICALCVSS 9.8EG 9.82022-05-06
In multiple Tecson Tankspion and GOKs SmartBox 4 products the affected application doesn't properly restrict access to an endpoint that is responsible for saving settings, to a unauthenticated user with limited access rights. Based on the …
- CVE-2019-12300CRITICALCVSS 9.8EG 9.82019-05-23
Buildbot before 1.8.2 and 2.x before 2.3.1 accepts a user-submitted authorization token from OAuth and uses it to authenticate a user. If an attacker has a token allowing them to read the user details of a victim, they can login as the vic…
- CVE-2019-12394CRITICALCVSS 9.8EG 9.82019-12-02
Anviz access control devices allow unverified password change which allows remote attackers to change the administrator password without prior authentication.
- CVE-2019-12395MEDIUMCVSS 5.3EG 5.32019-05-28
In Webbukkit Dynmap 3.0-beta-3 or below, due to a missing login check in servlet/MapStorageHandler.java, an attacker can see a map image without login even if victim enables login-required in setting.
- CVE-2019-12405CRITICALCVSS 9.8EG 9.82019-09-09
Improper authentication is possible in Apache Traffic Control versions 3.0.0 and 3.0.1 if LDAP is enabled for login in the Traffic Ops API component. Given a username for a user that can be authenticated via LDAP, it is possible to imprope…
- CVE-2019-12440CRITICALCVSS 9.8EG 9.82019-05-29
The Sitecore Rocks plugin before 2.1.149 for Sitecore allows an unauthenticated threat actor to inject malicious commands and code via the Sitecore Rocks Hard Rocks Service.
- CVE-2019-12530CRITICALCVSS 9.8EG 9.82019-06-02
Incorrect access control was discovered in the stdonato Dashboard plugin through 0.9.7 for GLPI, affecting df.php, issue.php, load.php, mem.php, traf.php, and uptime.php in front/sh.
- CVE-2019-12564CRITICALCVSS 9.8EG 9.82019-06-03
In DouCo DouPHP v1.5 Release 20190516, remote attackers can view the database backup file via a brute-force guessing approach for data/backup/DyyyymmddThhmmss.sql filenames.
- CVE-2019-12643CRITICALCVSS 10.0EG 10.02019-08-28
A vulnerability in the Cisco REST API virtual service container for Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass authentication on the managed Cisco IOS XE device. The vulnerability is due to an improper …
- CVE-2019-12664HIGHCVSS 7.5EG 7.52019-09-25
A vulnerability in the Dialer interface feature for ISDN connections in Cisco IOS XE Software for Cisco 4000 Series Integrated Services Routers (ISRs) could allow an unauthenticated, adjacent attacker to pass IPv4 traffic through an ISDN c…
- CVE-2019-12768CRITICALCVSS 9.8EG 9.82020-12-30
An issue was discovered on D-Link DAP-1650 devices through v1.03b07 before 1.04B02_J65H Hot Fix. Attackers can bypass authentication via forceful browsing.
- CVE-2019-12845MEDIUMCVSS 5.3EG 5.32019-07-03
The generated Kotlin DSL settings allowed usage of an unencrypted connection for resolving artifacts. The issue was fixed in JetBrains TeamCity 2018.2.3.
- CVE-2019-13188CRITICALCVSS 9.8EG 9.82019-09-05
In Knowage through 6.1.1, an unauthenticated user can bypass access controls and access the entire application.
- CVE-2019-13190MEDIUMCVSS 5.3EG 5.32019-09-05
In Knowage through 6.1.1, the sign up page does not invalidate a valid CAPTCHA token. This allows for CAPTCHA bypass in the signup page.
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →