CWE-287— Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.— MITRE CWE catalog
4,929 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 31 of 99
- CVE-2018-1539MEDIUMCVSS 5.4EG 6.52018-09-25
IBM Rational Engineering Lifecycle Manager 5.0 through 5.02 and 6.0 through 6.0.6 could allow remote attackers to bypass authentication via a direct request or forced browsing to a page other than URL intended. IBM X-Force ID: 142561.
- CVE-2018-15478HIGHCVSS 8.1EG 8.12018-08-30
An issue was discovered in myStrom WiFi Switch V1 before 2.66, WiFi Switch V2 before 3.80, WiFi Switch EU before 3.80, WiFi Bulb before 2.58, WiFi LED Strip before 3.80, WiFi Button before 2.73, and WiFi Button Plus before 2.73. The proces…
- CVE-2018-15479MEDIUMCVSS 6.5EG 6.52018-08-30
An issue was discovered in myStrom WiFi Switch V1 before 2.66, WiFi Switch V2 before 3.80, WiFi Switch EU before 3.80, WiFi Bulb before 2.58, WiFi LED Strip before 3.80, WiFi Button before 2.73, and WiFi Button Plus before 2.73. Devices di…
- CVE-2018-15485CRITICALCVSS 9.1EG 9.12018-09-07
An issue was discovered on KONE Group Controller (KGC) devices before 4.6.5. FTP does not require authentication or authorization, aka KONE-03.
- CVE-2018-15542MEDIUMCVSS 6.4EG 6.42018-10-09
An issue was discovered in the org.telegram.messenger application 4.8.11 for Android. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method's return value to true. In other words, an attack…
- CVE-2018-15543MEDIUMCVSS 6.8EG 6.82018-10-09
An issue was discovered in the org.telegram.messenger application 4.8.11 for Android. The FingerprintManager class for Biometric validation allows authentication bypass through the callback method from onAuthenticationFailed to onAuthentic…
- CVE-2018-15556CRITICALCVSS 9.8EG 9.82019-06-27
The Quantenna WiFi Controller on Telus Actiontec WEB6000Q v1.1.02.22 allows login with root level access with the user "root" and an empty password by using the enabled onboard UART headers.
- CVE-2018-15598HIGHCVSS 7.5EG 7.52018-08-21
Containous Traefik 1.6.x before 1.6.6, when --api is used, exposes the configuration and secret if authentication is missing and the API's port is publicly reachable.
- CVE-2018-15667HIGHCVSS 7.5EG 7.52018-08-21
An issue was discovered in Bloop Airmail 3 3.5.9 for macOS. It registers and uses the airmail:// URL scheme. The "send" command in the URL scheme allows an external application to send arbitrary emails from an active account without authen…
- CVE-2018-15721CRITICALCVSS 9.8EG 9.82018-12-20
The XMPP server in Logitech Harmony Hub before version 4.15.206 is vulnerable to authentication bypass via a crafted XMPP request. Remote attackers can use this vulnerability to gain access to the local API.
- CVE-2018-15727CRITICALCVSS 9.8EG 9.82018-08-29
Grafana 2.x, 3.x, and 4.x before 4.6.4 and 5.x before 5.2.3 allows authentication bypass because an attacker can generate a valid "remember me" cookie knowing only a username of an LDAP or OAuth user.
- CVE-2018-15751CRITICALCVSS 9.8EG 9.82018-10-24
SaltStack Salt before 2017.7.8 and 2018.3.x before 2018.3.3 allow remote attackers to bypass authentication and execute arbitrary commands via salt-api(netapi).
- CVE-2018-15819HIGHCVSS 7.5EG 7.52020-03-02
EasyIO EasyIO-30P devices before 2.0.5.27 have Incorrect Access Control, related to webuser.js.
- CVE-2018-16160HIGHCVSS 7.8EG 7.82018-11-15
SecureCore Standard Edition Version 2.x allows an attacker to bypass the product 's authentication to log in to a Windows PC.
- CVE-2018-16219HIGHCVSS 8.8EG 8.82019-04-25
A missing password verification in the web interface in AudioCodes 405HD VoIP phone with firmware 2.2.12 allows an remote attacker (in the same network as the device) to change the admin password without authentication via a POST request.
- CVE-2018-16286CRITICALCVSS 9.8EG 9.82018-09-14
LG SuperSign CMS allows authentication bypass because the CAPTCHA requirement is skipped if a captcha:pass cookie is sent, and because the PIN is limited to four digits.
- CVE-2018-1638HIGHCVSS 5.9EG 8.12018-07-31
IBM API Connect 5.0.0.0-5.0.8.3 Developer Portal does not enforce Two Factor Authentication (TFA) while resetting a user password but enforces it for all other login scenarios. IBM X-Force ID: 144483.
- CVE-2018-16464MEDIUMCVSS 5.7EG 5.72018-10-30
A missing access check in Nextcloud Server prior to 14.0.0 could lead to continued access to password protected link shares when the owner had changed the password.
- CVE-2018-16465MEDIUMCVSS 5.3EG 5.32018-10-30
Missing state in Nextcloud Server prior to 14.0.0 would not enforce the use of a second factor at login if the the provider of the second factor failed to load.
- CVE-2018-16467MEDIUMCVSS 5.3EG 5.32018-10-30
A missing check in Nextcloud Server prior to 14.0.0 could give unauthorized access to the previews of single file password protected shares.
- CVE-2018-16496MEDIUMCVSS 5.3EG 5.32021-05-26
In Versa Director, the un-authentication request found.
- CVE-2018-16590CRITICALCVSS 9.8EG 9.82018-09-06
FURUNO FELCOM 250 and 500 devices use only client-side JavaScript in login.js for authentication.
- CVE-2018-16668MEDIUMCVSS 5.3EG 5.32018-09-18
An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is internal installation path disclosure due to the lack of authentication for /html/repository.
- CVE-2018-16670MEDIUMCVSS 5.3EG 5.32018-09-18
An issue was discovered in CIRCONTROL CirCarLife before 4.3. There is PLC status disclosure due to lack of authentication for /html/devstat.html.
- CVE-2018-1668HIGHCVSS 5.3EG 7.52019-01-29
IBM DataPower Gateway 7.5.0.0 through 7.5.0.19, 7.5.1.0 through 7.5.1.18, 7.5.2.0 through 7.5.2.18, and 7.6.0.0 through 7.6.0.11 appliances allows "null" logins which could give read access to IPMI data to obtain sensitive information. IBM…
- CVE-2018-1672MEDIUMCVSS 5.0EG 6.32018-10-01
IBM WebSphere Portal 7.0, 8.0, 8.5, and 9.0 may fail to set the correct user context in certain impersonation scenarios, which can allow a user to act with the identity of a different user. IBM X-Force ID: 144958.
- CVE-2018-16737MEDIUMCVSS 5.3EG 5.32018-10-10
tinc before 1.0.30 has a broken authentication protocol, without even a partial mitigation.
- CVE-2018-16738LOWCVSS 3.7EG 3.72018-10-10
tinc 1.0.30 through 1.0.34 has a broken authentication protocol, although there is a partial mitigation. This is fixed in 1.1.
- CVE-2018-16877HIGHCVSS 7.8EG 7.82019-04-18
A flaw was found in the way pacemaker's client-server authentication was implemented in versions up to and including 2.0.0. A local attacker could use this flaw, and combine it with other IPC weaknesses, to achieve local privilege escalati…
- CVE-2018-16886HIGHCVSS 8.1EG 8.12019-01-14
etcd versions 3.2.x before 3.2.26 and 3.3.x before 3.3.11 are vulnerable to an improper authentication issue when role-based access control (RBAC) is used and client-cert-auth is enabled. If an etcd client server TLS certificate contains a…
- CVE-2018-16947CRITICALCVSS 9.8EG 9.82018-09-12
An issue was discovered in OpenAFS before 1.6.23 and 1.8.x before 1.8.2. The backup tape controller (butc) process accepts incoming RPCs but does not require (or allow for) authentication of those RPCs. Handling those RPCs results in opera…
- CVE-2018-17153CRITICALCVSS 9.8EG 9.82018-09-18
It was discovered that the Western Digital My Cloud device before 2.30.196 is affected by an authentication bypass vulnerability. An unauthenticated attacker can exploit this vulnerability to authenticate as an admin user without needing t…
- CVE-2018-17213HIGHCVSS 8.8EG 8.82019-07-29
An issue was discovered in PrinterOn Central Print Services (CPS) through 4.1.4. A user without valid credentials can bypass the authentication process, obtaining a valid session cookie with guest/pseudo-guest level privileges. This cookie…
- CVE-2018-17341HIGHCVSS 8.1EG 8.12018-09-23
BigTree 4.2.23 on Windows, when Advanced or Simple Rewrite routing is enabled, allows remote attackers to bypass authentication via a ..\ substring, as demonstrated by a launch.php?bigtree_htaccess_url=admin/images/..\ URI.
- CVE-2018-1738HIGHCVSS 7.1EG 7.12018-10-11
IBM Security Key Lifecycle Manager 2.6, 2.7, 3.0 could allow an authenticated user to obtain highly sensitive information or jeopardize system integrity due to improper authentication mechanisms. IBM X-Force ID: 147907.
- CVE-2018-17431CRITICALCVSS 9.8EG 9.82019-01-30
Web Console in Comodo UTM Firewall before 2.7.0 allows remote attackers to execute arbitrary code without authentication via a crafted URL.
- CVE-2018-17534MEDIUMCVSS 6.8EG 6.82018-10-15
Teltonika RUT9XX routers with firmware before 00.04.233 provide a root terminal on a serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.
- CVE-2018-1773MEDIUMCVSS 4.3EG 4.32018-09-12
IBM Datacap Fastdoc Capture 9.1.1, 9.1.3, and 9.1.4 could allow an authenticated user to bypass future authentication mechanisms once the initial login is completed. IBM X-Force ID: 148691.
- CVE-2018-17777CRITICALCVSS 9.8EG 9.82018-12-18
An issue was discovered on D-Link DVA-5592 A1_WI_20180823 devices. If the PIN of the page "/ui/cbpc/login" is the default Parental Control PIN (0000), it is possible to bypass the login form by editing the path of the cookie "sid" generate…
- CVE-2018-1778HIGHCVSS 7.7EG 8.12018-12-20
IBM LoopBack (IBM API Connect 2018.1, 2018.4.1, 5.0.8.0, and 5.0.8.4) could allow an attacker to bypass authentication if the AccessToken Model is exposed over a REST API, it is then possible for anyone to create an AccessToken for any Use…
- CVE-2018-17786CRITICALCVSS 9.8EG 9.82018-10-02
On D-Link DIR-823G devices, ExportSettings.sh, upload_settings.cgi, GetDownLoadSyslog.sh, and upload_firmware.cgi do not require authentication, which allows remote attackers to execute arbitrary code.
- CVE-2018-17918CRITICALCVSS 9.8EG 9.82018-11-02
Circontrol CirCarLife all versions prior to 4.3.1, authentication to the device can be bypassed by entering the URL of a specific page.
- CVE-2018-17923MEDIUMCVSS 6.9EG 6.92018-10-24
SAGA1-L8B with any firmware versions prior to A0.10 are vulnerable to an attack that an attacker with physical access to the product may able to reprogram it.
- CVE-2018-17926MEDIUMCVSS 4.3EG 4.32019-01-31
The product M2M ETHERNET (FW Versions 2.22 and prior, ETH-FW Versions 1.01 and prior) is vulnerable in that an attacker can upload a malicious language file by bypassing the user authentication mechanism.
- CVE-2018-17928MEDIUMCVSS 6.5EG 6.52019-01-31
The product CMS-770 (Software Versions 1.7.1 and prior)is vulnerable that an attacker can read sensitive configuration files by bypassing the user authentication mechanism.
- CVE-2018-17957HIGHCVSS 3.4EG 7.82018-12-26
The YaST2 RMT module for configuring the SUSE Repository Mirroring Tool (RMT) before 1.1.2 exposed MySQL database passwords on process commandline, allowing local attackers to access or corrupt the RMT database.
- CVE-2018-18014HIGHCVSS 4.8EG 7.82018-10-24
* Lack of authentication in Citrix Xen Mobile through 10.8 allows low-privileged local users to execute system commands as root by making requests to private services listening on ports 8000, 30000 and 30001. NOTE: the vendor disputes tha…
- CVE-2018-18061HIGHCVSS 7.5EG 7.52018-10-10
An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1. Attackers can access the file manager interface that provides them with the ability to upload and delete files.
- CVE-2018-18095MEDIUMCVSS 6.8EG 6.82019-07-11
Improper authentication in firmware for Intel(R) SSD DC S4500 Series and Intel(R) SSD DC S4600 Series before SCV10150 may allow an unprivileged user to potentially enable escalation of privilege via physical access.
- CVE-2018-1822CRITICALCVSS 9.8EG 9.82018-10-18
IBM FlashSystem 900 product GUI allows a specially crafted attack to bypass the authentication requirements of the system, resulting in the ability to remotely change the superuser password. This can be used by an attacker to gain administ…
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →