CWE-287— Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.— MITRE CWE catalog
4,929 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 29 of 99
- CVE-2018-0319CRITICALCVSS 9.8EG 9.82018-06-07
A vulnerability in the password recovery function of Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to gain unauthorized access to an affected device. The vulnerability is due to insufficient v…
- CVE-2018-0321CRITICALCVSS 9.8EG 9.82018-06-07
A vulnerability in Cisco Prime Collaboration Provisioning (PCP) could allow an unauthenticated, remote attacker to access the Java Remote Method Invocation (RMI) system. The vulnerability is due to an open port in the Network Interface and…
- CVE-2018-0362MEDIUMCVSS 4.3EG 4.32018-06-21
A vulnerability in BIOS authentication management of Cisco 5000 Series Enterprise Network Compute System and Cisco Unified Computing (UCS) E-Series Servers could allow an unauthenticated, local attacker to bypass the BIOS authentication an…
- CVE-2018-0382HIGHCVSS 5.3EG 7.52019-04-17
A vulnerability in the session identification management functionality of the web-based interface of Cisco Wireless LAN Controller (WLC) Software could allow an unauthenticated, remote attacker to hijack a valid user session on an affected…
- CVE-2018-0435CRITICALCVSS 9.1EG 9.12018-10-05
A vulnerability in the Cisco Umbrella API could allow an authenticated, remote attacker to view and modify data across their organization and other organizations. The vulnerability is due to insufficient authentication configurations for t…
- CVE-2018-0505MEDIUMCVSS 6.5EG 6.52018-10-04
Mediawiki 1.31 before 1.31.1, 1.30.1, 1.29.3 and 1.27.5 contains a flaw where BotPasswords can bypass CentralAuth's account lock
- CVE-2018-0528MEDIUMCVSS 4.3EG 4.32018-06-26
Cybozu Office 10.0.0 to 10.7.0 allows authenticated attackers to bypass authentication to view the schedules that are not permitted to access via unspecified vectors.
- CVE-2018-0669CRITICALCVSS 9.8EG 9.82019-01-09
INplc-RT 3.08 and earlier allows remote attackers to bypass authentication to execute an arbitrary command through the protocol-compliant traffic. This is a different vulnerability than CVE-2018-0670.
- CVE-2018-0670CRITICALCVSS 9.8EG 9.82019-01-09
INplc-RT 3.08 and earlier allows remote attackers to bypass authentication to execute an arbitrary command through the protocol-compliant traffic. This is a different vulnerability than CVE-2018-0669.
- CVE-2018-0676HIGHCVSS 8.8EG 8.82019-01-09
BN-SDWBP3 firmware version 1.0.9 and earlier allows an attacker on the same network segment to bypass authentication to access to the management screen and execute an arbitrary command via unspecified vectors.
- CVE-2018-0886HIGHCVSS 7.0EG 8.92018-03-14
The Credential Security Support Provider protocol (CredSSP) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709 Windows Server 2016…
- CVE-2018-1000875CRITICALCVSS 9.8EG 9.82018-12-20
Berkeley Open Infrastructure for Network Computing BOINC Server and Website Code version 0.9-1.0.2 contains a CWE-302: Authentication Bypass by Assumed-Immutable Data vulnerability in Website Terms of Service Acceptance Page that can resul…
- CVE-2018-10362CRITICALCVSS 9.8EG 9.82018-04-25
An issue was discovered in phpLiteAdmin 1.9.5 through 1.9.7.1. Due to loose comparison with '==' instead of '===' in classes/Authorization.php for the user-provided login password, it is possible to login with a simpler password if the pas…
- CVE-2018-10544CRITICALCVSS 9.8EG 9.82018-05-02
Meross MSS110 devices through 1.1.24 contain an unauthenticated admin.htm administrative interface.
- CVE-2018-10561CRITICALCVSS 9.8EG 9.8⚠ KEV2018-05-04
An issue was discovered on Dasan GPON home routers. It is possible to bypass authentication simply by appending "?images" to any URL of the device that requires authentication, as demonstrated by the /menu.html?images/ or /GponForm/diag_FO…
- CVE-2018-10576HIGHCVSS 7.8EG 7.82018-04-30
An issue was discovered on WatchGuard AP100, AP102, and AP200 devices with firmware before 1.2.9.15. Improper authentication handling by the native Access Point web UI allows authentication using a local system account (instead of the dedi…
- CVE-2018-10597HIGHCVSS 8.3EG 8.32018-06-05
IntelliVue Patient Monitors MP Series (including MP2/X2/MP30/MP50/MP70/NP90/MX700/800) Rev B-M, IntelliVue Patient Monitors MX (MX400-550) Rev J-M and (X3/MX100 for Rev M only), and Avalon Fetal/Maternal Monitors FM20/FM30/FM40/FM50 with s…
- CVE-2018-10603CRITICALCVSS 9.8EG 9.82018-07-31
Martem TELEM GW6 and GWM devices with firmware 2018.04.18-linux_4-01-601cb47 and prior do not perform authentication of IEC-104 control commands, which may allow a rogue node a remote control of the industrial process.
- CVE-2018-10611CRITICALCVSS 9.8EG 9.82018-06-04
Java remote method invocation (RMI) input port in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior may be exploited to allow unauthenticated users to launch applications and support remote code execution through web serv…
- CVE-2018-10630CRITICALCVSS 9.8EG 9.82018-08-10
For Crestron TSW-X60 version prior to 2.001.0037.001 and MC3 version prior to 1.502.0047.001, The devices are shipped with authentication disabled, and there is no indication to users that they need to take steps to enable it. When comprom…
- CVE-2018-10641HIGHCVSS 8.1EG 8.12018-05-04
D-Link DIR-601 A1 1.02NA devices do not require the old password for a password change, which occurs in cleartext.
- CVE-2018-10682CRITICALCVSS 9.8EG 9.82018-05-09
An issue was discovered in WildFly 10.1.2.Final. It is possible for an attacker to access the administration panel on TCP port 9990 without any authentication using "anonymous" access that is automatically created. Once logged in, a miscon…
- CVE-2018-10683CRITICALCVSS 9.8EG 9.82018-05-09
An issue was discovered in WildFly 10.1.2.Final. In the case of a default installation without a security realm reference, an attacker can successfully access the server without authentication. NOTE: the Security Realms documentation in th…
- CVE-2018-1082HIGHCVSS 8.1EG 8.12018-04-04
A flaw was found in Moodle 3.4 to 3.4.1, and 3.3 to 3.3.4. If a user account using OAuth2 authentication method was once confirmed but later suspended, the user could still login to the site.
- CVE-2018-10825MEDIUMCVSS 5.3EG 5.32018-05-15
Mimo Baby 2 devices do not use authentication or encryption for the Bluetooth Low Energy (BLE) communication from a Turtle to a Lilypad, which allows attackers to inject fake information about the position and temperature of a baby via a r…
- CVE-2018-10847HIGHCVSS 4.2EG 8.82018-07-30
prosody before versions 0.10.2, 0.9.14 is vulnerable to an Authentication Bypass. Prosody did not verify that the virtual host associated with a user session remained the same across stream restarts. A user may authenticate to XMPP host A …
- CVE-2018-1085CRITICALCVSS 9.0EG 9.82018-06-15
openshift-ansible before versions 3.9.23, 3.7.46 deploys a misconfigured etcd file that causes the SSL client certificate authentication to be disabled. Quotations around the values of ETCD_CLIENT_CERT_AUTH and ETCD_PEER_CLIENT_CERT_AUTH i…
- CVE-2018-10861HIGHCVSS 8.1EG 8.12018-07-10
A flaw was found in the way ceph mon handles user requests. Any authenticated ceph user having read access to ceph can delete, create ceph storage pools and corrupt snapshot images. Ceph branches master, mimic, luminous and jewel are belie…
- CVE-2018-10933CRITICALCVSS 9.1EG 9.12018-10-17
A vulnerability was found in libssh's server-side state machine before versions 0.7.6 and 0.8.4. A malicious client could create channels without first performing authentication, resulting in unauthorized access.
- CVE-2018-11052CRITICALCVSS 9.8EG 9.82018-07-03
Dell EMC ECS versions 3.2.0.0 and 3.2.0.1 contain an authentication bypass vulnerability. A remote unauthenticated attacker could exploit this vulnerability to read and modify S3 objects by supplying specially crafted S3 requests.
- CVE-2018-1106MEDIUMCVSS 5.5EG 5.52018-04-23
An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further c…
- CVE-2018-1112HIGHCVSS 8.0EG 8.82018-04-25
glusterfs server before versions 3.10.12, 4.0.2 is vulnerable when using 'auth.allow' option which allows any unauthenticated gluster client to connect from any network to mount gluster storage volumes. NOTE: this vulnerability exists beca…
- CVE-2018-11271CRITICALCVSS 9.8EG 9.82019-05-24
Improper authentication can happen on Remote command handling due to inappropriate handling of events in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snap…
- CVE-2018-1128HIGHCVSS 7.5EG 7.52018-07-10
It was found that cephx authentication protocol did not verify ceph clients correctly and was vulnerable to replay attack. Any attacker having access to ceph cluster network who is able to sniff packets on network can use this vulnerabilit…
- CVE-2018-1129MEDIUMCVSS 6.5EG 6.52018-07-10
A flaw was found in the way signature calculation was handled by cephx authentication protocol. An attacker having access to ceph cluster network who is able to alter the message payload was able to bypass signature checks done by cephx pr…
- CVE-2018-11407CRITICALCVSS 9.8EG 9.82018-06-13
An issue was discovered in the Ldap component in Symfony 2.8.x before 2.8.37, 3.3.x before 3.3.17, 3.4.x before 3.4.7, and 4.0.x before 4.0.7. It allows remote attackers to bypass authentication by logging in with a "null" password and val…
- CVE-2018-11426CRITICALCVSS 9.8EG 9.82019-07-03
A weak Cookie parameter is used in the web application of Moxa OnCell G3100-HSPA Series version 1.4 Build 16062919 and prior. An attacker can brute force parameters required to bypass authentication and access the web interface to use all …
- CVE-2018-11478HIGHCVSS 8.8EG 8.82018-05-30
An issue was discovered on Vgate iCar 2 Wi-Fi OBD2 Dongle devices. The OBD port is used to receive measurement data and debug information from the car. This on-board diagnostics feature can also be used to send commands to the car (differe…
- CVE-2018-11491CRITICALCVSS 9.8EG 9.82018-07-25
ASUS HG100 devices with firmware before 1.05.12 allow unauthenticated access, leading to remote command execution.
- CVE-2018-11579MEDIUMCVSS 5.3EG 5.32018-05-31
class-woo-banner-management.php in the MULTIDOTS WooCommerce Category Banner Management plugin 1.1.0 for WordPress has an Unauthenticated Settings Change Vulnerability, related to certain wp_ajax_nopriv_ usage. Anyone can change the plugin…
- CVE-2018-1163CRITICALCVSS 9.8EG 9.82018-02-08
This vulnerability allows remote attackers to bypass authentication on vulnerable installations of Quest NetVault Backup 11.2.0.13. The specific flaw exists within JSON RPC Request handling. By setting the checksession parameter to a speci…
- CVE-2018-11692CRITICALCVSS 9.8EG 9.82018-06-04
An issue was discovered on Canon LBP6650, LBP3370, LBP3460, and LBP7750C devices. It is possible to bypass the Administrator Mode authentication for /tlogin.cgi via vectors involving frame.cgi?page=DevStatus. NOTE: the vendor reportedly re…
- CVE-2018-11711CRITICALCVSS 9.8EG 9.82018-06-04
A remote attacker can bypass the System Manager Mode on the Canon MF210 and MF220 web interface without knowing the PIN for /login.html via vectors involving /portal_top.html to get full access to the device. NOTE: the vendor reportedly re…
- CVE-2018-11765HIGHCVSS 7.5EG 7.52020-09-30
In Apache Hadoop versions 3.0.0-alpha2 to 3.0.0, 2.9.0 to 2.9.2, 2.8.0 to 2.8.5, any users can access some servlets without authentication when Kerberos authentication is enabled and SPNEGO through HTTP is not enabled.
- CVE-2018-11770HIGHCVSS 4.2EG 7.32018-08-13
From version 1.3.0 onward, Apache Spark's standalone master exposes a REST API for job submission, in addition to the submission mechanism used by spark-submit. In standalone, the config property 'spark.authenticate.secret' establishes a s…
- CVE-2018-11787HIGHCVSS 8.1EG 8.12018-09-18
In Apache Karaf version prior to 3.0.9, 4.0.9, 4.1.1, when the webconsole feature is installed in Karaf, it is available at .../system/console and requires authentication to access it. One part of the console is a Gogo shell/console that g…
- CVE-2018-11952HIGHCVSS 8.4EG 8.42024-11-26
An image with a version lower than the fuse version may potentially be booted lead to improper authentication.
- CVE-2018-12013HIGHCVSS 7.8EG 7.82019-05-24
Improper authentication in locked memory region can lead to unprivilged access to the memory in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdrag…
- CVE-2018-12048CRITICALCVSS 9.8EG 9.82018-06-08
A remote attacker can bypass the Management Mode on the Canon LBP7110Cw web interface without a PIN for /checkLogin.cgi via vectors involving /portal_top.html to get full access to the device. NOTE: the vendor reportedly responded that thi…
- CVE-2018-12049CRITICALCVSS 9.8EG 9.82018-06-08
A remote attacker can bypass the System Manager Mode on the Canon LBP6030w web interface without a PIN for /checkLogin.cgi via vectors involving /portal_top.html to get full access to the device. NOTE: the vendor reportedly responded that …
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →