CWE-287— Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.— MITRE CWE catalog
4,929 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 32 of 99
- CVE-2018-18255HIGHCVSS 7.8EG 7.82019-03-15
An issue was discovered in CapMon Access Manager 5.4.1.1005. The client applications of AccessManagerCoreService.exe communicate with this server through named pipes. A user can initiate communication with the server by creating a named pi…
- CVE-2018-18256HIGHCVSS 7.8EG 7.82019-03-15
An issue was discovered in CapMon Access Manager 5.4.1.1005. A regular user can obtain local administrator privileges if they run any whitelisted application through the Custom App Launcher.
- CVE-2018-18389CRITICALCVSS 9.8EG 9.82018-10-16
Due to incorrect access control in Neo4j Enterprise Database Server 3.4.x before 3.4.9, the setting of LDAP for authentication with STARTTLS, and System Account for authorization, allows an attacker to log into the server by sending any va…
- CVE-2018-18505CRITICALCVSS 10.0EG 10.02019-02-05
An earlier fix for an Inter-process Communication (IPC) vulnerability, CVE-2011-3079, added authentication to communication between IPC endpoints and server parents during IPC process creation. This authentication is insufficient for chann…
- CVE-2018-18571CRITICALCVSS 9.1EG 9.12019-06-05
An Incorrect Access Control vulnerability has been identified in Citrix XenMobile Server 10.8.0 before Rolling Patch 6 and 10.9.0 before Rolling Patch 3. An attacker can impersonate and take actions on behalf of any Mobile Application Mana…
- CVE-2018-18814CRITICALCVSS 8.8EG 9.82019-01-16
The TIBCO Spotfire authentication component of TIBCO Software Inc.'s TIBCO Spotfire Analytics Platform for AWS Marketplace, and TIBCO Spotfire Server contains a vulnerability in the handling of the authentication that theoretically may all…
- CVE-2018-18877HIGHCVSS 8.8EG 8.82019-06-18
In firmware version MS_2.6.9900 of Columbia Weather MicroServer, an authenticated web user can access an alternative configuration page config_main.php that allows manipulation of the device.
- CVE-2018-18891HIGHCVSS 7.5EG 7.52018-11-01
MiniCMS 1.10 allows file deletion via /mc-admin/post.php?state=delete&delete= because the authentication check occurs too late.
- CVE-2018-18907HIGHCVSS 7.5EG 7.52022-06-16
An issue was discovered on D-Link DIR-850L 1.21WW devices. A partially completed WPA handshake is sufficient for obtaining full access to the wireless network. A client can access the network by sending packets on Data Frames to the AP wit…
- CVE-2018-19000MEDIUMCVSS 5.3EG 5.32019-02-05
LCDS Laquis SCADA prior to version 4.1.0.4150 allows an authentication bypass, which may allow an attacker access to sensitive data.
- CVE-2018-19023HIGHCVSS 8.8EG 8.82019-01-25
Hetronic Nova-M prior to verson r161 uses fixed codes that are reproducible by sniffing and re-transmission. This can lead to unauthorized replay of a command, spoofing of an arbitrary message, or keeping the controlled load in a permanent…
- CVE-2018-19076CRITICALCVSS 9.8EG 9.82018-11-07
An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The FTP and RTSP services make it easi…
- CVE-2018-19249HIGHCVSS 7.5EG 7.52019-01-03
The Stripe API v1 allows remote attackers to bypass intended access restrictions by replaying api.stripe.com /v1/tokens XMLHttpRequest data, parsing the response under the object card{}, and reading the cvc_check information if the creatio…
- CVE-2018-19392CRITICALCVSS 9.8EG 9.82019-03-15
Cobham Satcom Sailor 250 and 500 devices before 1.25 contained an unauthenticated password reset vulnerability. This could allow modification of any user account's password (including the default "admin" account), without prior knowledge o…
- CVE-2018-19458HIGHCVSS 7.5EG 7.62018-11-22
In PHP Proxy 3.0.3, any user can read files from the server without authentication due to an index.php?q=file:/// LFI URI, a different vulnerability than CVE-2018-19246.
- CVE-2018-19505MEDIUMCVSS 6.5EG 6.52019-01-03
Remedy AR System Server in BMC Remedy 7.1 may fail to set the correct user context in certain impersonation scenarios, which can allow a user to act with the identity of a different user, because userdata.js in the WOI:WorkOrderConsole com…
- CVE-2018-19616HIGHCVSS 8.1EG 8.12018-12-26
An issue was discovered in Rockwell Automation Allen-Bradley PowerMonitor 1000. An unauthenticated user can add/edit/remove administrators because access control is implemented on the client side via a disabled attribute for a BUTTON eleme…
- CVE-2018-19645CRITICALCVSS 9.8EG 9.82019-02-12
An Authentication Bypass issue exists in Solutions Business Manager (SBM) (formerly Serena Business Manager (SBM)) versions prior to 11.5.
- CVE-2018-19783CRITICALCVSS 9.8EG 9.82019-03-21
Kentix MultiSensor-LAN 5.63.00 devices and previous allow Authentication Bypass via an Alternate Path or Channel.
- CVE-2018-19831HIGHCVSS 7.5EG 7.52019-12-31
The ToOwner() function of a smart contract implementation for Cryptbond Network (CBN), an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function does not check the caller's identity.
- CVE-2018-19832HIGHCVSS 7.5EG 7.52019-12-31
The NETM() function of a smart contract implementation for NewIntelTechMedia (NETM), an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function does not check the caller's identity.
- CVE-2018-19833HIGHCVSS 7.5EG 7.52019-12-31
The owned function of a smart contract implementation for DDQ, an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function does not check the caller's identity.
- CVE-2018-19834HIGHCVSS 7.5EG 7.52019-12-31
The quaker function of a smart contract implementation for BOMBBA (BOMB), an tradable Ethereum ERC20 token, allows attackers to change the owner of the contract, because the function does not check the caller's identity.
- CVE-2018-1987HIGHCVSS 7.8EG 7.82019-08-02
IBM Spectrum Protect for Enterprise Resource Planning 7.1 and 8.1, if tracing is activated, the IBM Spectrum Protect node password may be displayed in plain text in the ERP trace file. IBM X-Force ID: 154280.
- CVE-2018-19937MEDIUMCVSS 6.6EG 6.62018-12-31
A local, authenticated attacker can bypass the passcode in the VideoLAN VLC media player app before 3.1.5 for iOS by opening a URL and turning the phone.
- CVE-2018-1999045MEDIUMCVSS 5.4EG 5.42018-08-23
A improper authentication vulnerability exists in Jenkins 2.137 and earlier, 2.121.2 and earlier in SecurityRealm.java, TokenBasedRememberMeServices2.java that allows attackers with a valid cookie to remain logged in even if that feature i…
- CVE-2018-19999HIGHCVSS 7.8EG 7.82019-06-07
The local management interface in SolarWinds Serv-U FTP Server 15.1.6.25 has incorrect access controls that permit local users to bypass authentication in the application and execute code in the context of the Windows SYSTEM account, leadi…
- CVE-2018-20342MEDIUMCVSS 6.8EG 6.82018-12-21
The Floureon IP Camera SP012 provides a root terminal on a UART serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.
- CVE-2018-20422HIGHCVSS 8.1EG 8.12018-12-24
Discuz! DiscuzX 3.4, when WeChat login is enabled, allows remote attackers to bypass authentication by leveraging a non-empty #wechat#common_member_wechatmp to gain login access to an account via a plugin.php ac=wxregister request (the att…
- CVE-2018-20489MEDIUMCVSS 5.3EG 5.32019-12-30
An issue was discovered in GitLab Community and Enterprise Edition before 11.4.13, 11.5.x before 11.5.6, and 11.6.x before 11.6.1. It has Incorrect Access Control.
- CVE-2018-20675CRITICALCVSS 9.8EG 9.82019-01-09
D-Link DIR-822 C1 before v3.11B01Beta, DIR-822-US C1 before v3.11B01Beta, DIR-850L A* before v1.21B08Beta, DIR-850L B* before v2.22B03Beta, and DIR-880L A* before v1.20B02Beta devices allow authentication bypass.
- CVE-2018-20735HIGHCVSS 7.8EG 7.82019-01-17
An issue was discovered in BMC PATROL Agent through 11.3.01. It was found that the PatrolCli application can allow for lateral movement and escalation of privilege inside a Windows Active Directory environment. It was found that by default…
- CVE-2018-20888MEDIUMCVSS 5.5EG 5.52019-08-01
cPanel before 74.0.0 allows file modification in the context of the root account because of incorrect HTTP authentication (SEC-424).
- CVE-2018-20924MEDIUMCVSS 5.5EG 5.52019-08-01
cPanel before 70.0.23 allows arbitrary file-read and file-unlink operations via WHM style uploads (SEC-378).
- CVE-2018-20937MEDIUMCVSS 4.3EG 4.32019-08-01
cPanel before 68.0.27 does not validate database and dbuser names during renames (SEC-321).
- CVE-2018-20954HIGHCVSS 7.5EG 7.52019-08-08
The "Security and Privacy" Encryption feature in Mailpile before 1.0.0rc4 does not exclude disabled, revoked, and expired keys.
- CVE-2018-21038CRITICALCVSS 9.8EG 9.82020-04-08
An issue was discovered on Samsung mobile devices with N(7.x) software. The Secure Folder app's startup logic allows authentication bypass. The Samsung ID is SVE-2018-11628 (December 2018).
- CVE-2018-21062MEDIUMCVSS 4.6EG 4.62020-04-08
An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. When biometric authentication is disabled, an attacker can view Streams content (e.g., a Gallery slideshow) of a locked Secure Folder via a connection to an…
- CVE-2018-21118HIGHCVSS 8.8EG 8.82020-04-22
NETGEAR XR500 devices before 2.3.2.32 are affected by authentication bypass.
- CVE-2018-21121HIGHCVSS 8.8EG 8.82020-04-22
Certain NETGEAR devices are affected by authentication bypass. This affects GS810EMX before 1.0.0.5, XS512EM before 1.0.0.6, and XS724EM before 1.0.0.6.
- CVE-2018-21125HIGHCVSS 8.8EG 8.82020-04-22
NETGEAR WAC510 devices before 5.0.0.17 are affected by authentication bypass.
- CVE-2018-21128HIGHCVSS 8.8EG 8.82020-04-22
Certain NETGEAR devices are affected by authentication bypass. This affects WAC505 before 5.0.0.17 and WAC510 before 5.0.0.17.
- CVE-2018-21235HIGHCVSS 7.5EG 7.52020-06-04
An issue was discovered in Foxit E-mail advertising system before September 2018. It allows authentication bypass and information disclosure, related to Interspire Email Marketer.
- CVE-2018-21246CRITICALCVSS 9.8EG 9.82020-06-15
Caddy before 0.10.13 mishandles TLS client authentication, as demonstrated by an authentication bypass caused by the lack of the StrictHostMatching mode.
- CVE-2018-21263HIGHCVSS 8.8EG 8.82020-06-19
An issue was discovered in Mattermost Server before 4.7.0, 4.6.2, and 4.5.2. An attacker could authenticate to a different user's account via a crafted SAML response.
- CVE-2018-2449HIGHCVSS 8.6EG 8.62018-08-14
SAP SRM MDM Catalog versions 3.73, 7.31, 7.32 in (SAP NetWeaver 7.3) - import functionality does not perform authentication checks for valid repository user. This is an unauthenticated functionality that you can use on windows machines to …
- CVE-2018-2483MEDIUMCVSS 4.3EG 4.32018-11-13
HTTP Verb Tampering is possible in SAP BusinessObjects Business Intelligence Platform, versions 4.1 and 4.2, Central Management Console (CMC) by changing request method.
- CVE-2018-25030LOWCVSS 3.3EG 3.32022-03-28
A vulnerability classified as problematic has been found in Mirmay Secure Private Browser and File Manager up to 2.5. Affected is the Auto Lock. A race condition leads to a local authentication bypass. The exploit has been disclosed to the…
- CVE-2018-25043HIGHCVSS 5.0EG 8.82022-06-17
A vulnerability classified as critical was found in uTorrent. This vulnerability affects unknown code of the component PRNG. The manipulation leads to weak authentication. The attack can be initiated remotely. The exploit has been disclose…
- CVE-2018-25236CRITICALCVSS 9.8EG 9.82026-04-03
Hirschmann HiOS and HiSecOS products RSP, RSPE, RSPS, RSPL, MSP, EES, EESX, GRS, OS, RED, EAGLE contain an authentication bypass vulnerability in the HTTP(S) management module that allows unauthenticated remote attackers to gain administra…
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →