CWE-287— Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.— MITRE CWE catalog
4,930 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 43 of 99
- CVE-2020-25514HIGHCVSS 8.4EG 8.42020-09-22
Sourcecodester Simple Library Management System 1.0 is affected by Incorrect Access Control via the Login Panel, http://<site>/lms/admin.php.
- CVE-2020-25592CRITICALCVSS 9.8EG 9.82020-11-06
In SaltStack Salt through 3002, salt-netapi improperly validates eauth credentials and tokens. A user can bypass authentication and invoke Salt SSH.
- CVE-2020-25621HIGHCVSS 8.4EG 8.42020-12-16
An issue was discovered in SolarWinds N-Central 12.3.0.670. The local database does not require authentication: security is only based on ability to access a network interface. The database has keys and passwords.
- CVE-2020-25719HIGHCVSS 7.2EG 7.22022-02-18
A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerbero…
- CVE-2020-25747CRITICALCVSS 9.4EG 9.42020-09-25
The Telnet service of Rubetek RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) can allow a remote attacker to gain access to RTSP and ONFIV services without authentication. Thus, the attacker can watch live streams from…
- CVE-2020-25848CRITICALCVSS 9.8EG 9.82020-12-31
HGiga MailSherlock contains weak authentication flaw that attackers grant privilege remotely with default password generation mechanism.
- CVE-2020-25867MEDIUMCVSS 5.3EG 5.32020-10-07
SoPlanning before 1.47 doesn't correctly check the security key used to publicly share plannings. It allows a bypass to get access without authentication.
- CVE-2020-26030CRITICALCVSS 9.8EG 9.82020-12-28
An issue was discovered in Zammad before 3.4.1. There is an authentication bypass in the SSO endpoint via a crafted header, when SSO is not configured. An attacker can create a valid and authenticated session that can be used to perform an…
- CVE-2020-26101CRITICALCVSS 9.8EG 9.82020-09-25
In cPanel before 88.0.3, insecure RNDC credentials are used for BIND on a templated VM (SEC-549).
- CVE-2020-26105CRITICALCVSS 9.8EG 9.82020-09-25
In cPanel before 88.0.3, insecure chkservd test credentials are used on a templated VM (SEC-554).
- CVE-2020-26136MEDIUMCVSS 6.5EG 6.52021-06-08
In SilverStripe through 4.6.0-rc1, GraphQL doesn't honour MFA (multi-factor authentication) when using basic authentication.
- CVE-2020-26139MEDIUMCVSS 5.3EG 5.32021-05-11
An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. This might be abused in projected Wi-Fi networks to l…
- CVE-2020-26160HIGHCVSS 7.5EG 7.52020-09-30
jwt-go before 4.0.0-preview1 allows attackers to bypass intended access restrictions in situations with []string{} for m["aud"] (which is allowed by the specification). Because the type assertion fails, "" is the value of aud. This is a se…
- CVE-2020-26168CRITICALCVSS 9.8EG 9.82020-11-09
The LDAP authentication method in LdapLoginModule in Hazelcast IMDG Enterprise 4.x before 4.0.3, and Jet Enterprise 4.x through 4.2, doesn't verify properly the password in some system-user-dn scenarios. As a result, users (clients/members…
- CVE-2020-26173LOWCVSS 3.1EG 3.12020-12-18
An incorrect access control implementation in Tangro Business Workflow before 1.18.1 allows an attacker to download documents (PDF) by providing a valid document ID and token. No further authentication is required.
- CVE-2020-26200MEDIUMCVSS 6.8EG 6.82021-02-26
A component of Kaspersky custom boot loader allowed loading of untrusted UEFI modules due to insufficient check of their authenticity. This component is incorporated in Kaspersky Rescue Disk (KRD) and was trusted by the Authentication Agen…
- CVE-2020-26214CRITICALCVSS 9.1EG 9.12020-11-06
In Alerta before version 8.1.0, users may be able to bypass LDAP authentication if they provide an empty password when Alerta server is configure to use LDAP as the authorization provider. Only deployments where LDAP servers are configured…
- CVE-2020-26236HIGHCVSS 7.5EG 7.52020-11-20
In ScratchVerifier before commit a603769, an attacker can hijack the verification process to log into someone else's account on any site that uses ScratchVerifier for logins. A possible exploitation would follow these steps: 1. User starts…
- CVE-2020-26511HIGHCVSS 7.5EG 7.52020-10-02
The wpo365-login plugin before v11.7 for WordPress allows use of a symmetric algorithm to decrypt a JWT token. This leads to authentication bypass.
- CVE-2020-26542CRITICALCVSS 9.8EG 9.82020-11-09
An issue was discovered in the MongoDB Simple LDAP plugin through 2020-10-02 for Percona Server when using the SimpleLDAP authentication in conjunction with Microsoft’s Active Directory, Percona has discovered a flaw that would allow aut…
- CVE-2020-26557HIGHCVSS 7.5EG 7.52021-05-24
Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (without possession of the AuthValue used in the provisioning protocol) to determine the AuthValue via a brute-force attack (unless the AuthValue is s…
- CVE-2020-26558MEDIUMCVSS 4.2EG 4.22021-05-24
Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-middle attacker to identify the Passkey used during pairing (in the Passkey authentication procedure) by reflection of th…
- CVE-2020-26599MEDIUMCVSS 5.3EG 5.32020-10-06
An issue was discovered on Samsung mobile devices with Q(10.0) software. The DynamicLockscreen Terms and Conditions can be accepted without authentication. The Samsung ID is SVE-2020-17079 (October 2020).
- CVE-2020-26819HIGHCVSS 8.8EG 8.82020-11-10
SAP NetWeaver AS ABAP (Web Dynpro), versions - 731, 740, 750, 751, 752, 753, 754, 755, 782, allows an authenticated user to access Web Dynpro components, that allows them to read and delete database logfiles because of Improper Access Cont…
- CVE-2020-26829CRITICALCVSS 10.0EG 10.02020-12-09
SAP NetWeaver AS JAVA (P2P Cluster Communication), versions - 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows arbitrary connections from processes because of missing authentication check, that are outside the cluster and even outside the networ…
- CVE-2020-26834MEDIUMCVSS 5.4EG 5.42020-12-09
SAP HANA Database, version - 2.0, does not correctly validate the username when performing SAML bearer token-based user authentication. It is possible to manipulate a valid existing SAML bearer token to authenticate as a user whose name is…
- CVE-2020-26921HIGHCVSS 8.3EG 8.32020-10-09
Certain NETGEAR devices are affected by authentication bypass. This affects GS110EMX before 1.0.1.7, GS810EMX before 1.7.1.3, XS512EM before 1.0.1.3, and XS724EM before 1.0.1.3.
- CVE-2020-26926CRITICALCVSS 9.6EG 9.62020-10-09
Certain NETGEAR devices are affected by authentication bypass. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 befo…
- CVE-2020-26927CRITICALCVSS 9.4EG 9.42020-10-09
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.26, JR6150 before 1.0.1.26, R6120 before 1.0.0.66, …
- CVE-2020-26928CRITICALCVSS 9.6EG 9.62020-10-09
Certain NETGEAR devices are affected by authentication bypass. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852 before 3.2.10.11, RBR850 before 3.2.10.11, and RBS850 befo…
- CVE-2020-27147MEDIUMCVSS 6.5EG 6.52020-12-15
The REST API component of TIBCO Software Inc.'s TIBCO PartnerExpress contains a vulnerability that theoretically allows an unauthenticated attacker with network access to obtain an authenticated login URL for the affected system via a REST…
- CVE-2020-27199HIGHCVSS 7.5EG 7.52020-12-17
The Magic Home Pro application 1.5.1 for Android allows Authentication Bypass. The security control that the application currently has in place is a simple Username and Password authentication function. Using enumeration, an attacker is ab…
- CVE-2020-27254HIGHCVSS 7.5EG 7.52020-12-21
Emerson Rosemount X-STREAM Gas AnalyzerX-STREAM enhanced XEGP, XEGK, XEFD, XEXF – all revisions, The affected products are vulnerable to improper authentication for accessing log and backup data, which could allow an attacker with a spec…
- CVE-2020-27266MEDIUMCVSS 6.5EG 6.52021-01-19
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDana-i and AnyDana-A mobile applications allows physically proximate attackers to bypass user authenti…
- CVE-2020-27408HIGHCVSS 7.5EG 7.52020-12-04
OpenSIS Community Edition through 7.6 is affected by incorrect access controls for the file ResetUserInfo.php that allow an unauthenticated attacker to change the password of arbitrary users.
- CVE-2020-27488CRITICALCVSS 9.8EG 9.82021-01-13
Loxone Miniserver devices with firmware before 11.1 (aka 11.1.9.3) are unable to use an authentication method that is based on the "signature of the update package." Therefore, these devices (or attackers who are spoofing these devices) ca…
- CVE-2020-27523HIGHCVSS 7.5EG 7.52020-11-11
Solstice-Pod up to 5.0.2 WEBRTC server mishandles the format-string specifiers %x; %p; %c and %s in the screen_key, display_name, browser_name, and operation_system parameter during the authentication process. This may crash the server and…
- CVE-2020-27558MEDIUMCVSS 6.5EG 6.52020-11-17
Use of an undocumented user in BASETech GE-131 BT-1837836 firmware 20180921 allows remote attackers to view the video stream.
- CVE-2020-27780CRITICALCVSS 9.8EG 9.82020-12-18
A flaw was found in Linux-Pam in versions prior to 1.5.1 in the way it handle empty passwords for non-existing users. When the user doesn't exist PAM try to authenticate with root and in the case of an empty password it successfully authen…
- CVE-2020-27838MEDIUMCVSS 6.5EG 6.52021-03-08
A flaw was found in keycloak in versions prior to 13.0.0. The client registration endpoint allows fetching information about PUBLIC clients (like client secret) without authentication which could be an issue if the same PUBLIC client chang…
- CVE-2020-27863MEDIUMCVSS 6.5EG 6.52021-02-12
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DVA-2800 and DSL-2888A routers. Authentication is not required to exploit this vulnerability. The specific flaw exis…
- CVE-2020-27865HIGHCVSS 8.8EG 8.82021-02-12
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1860 firmware version 1.04B03 WiFi extenders. Authentication is not required to exploit this vulnerability. The specific…
- CVE-2020-27866HIGHCVSS 8.8EG 8.82021-02-12
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020, Nighthawk AC2100, and Nighthawk AC2400 …
- CVE-2020-27902MEDIUMCVSS 4.6EG 4.62020-12-08
An authentication issue was addressed with improved state management. This issue is fixed in iOS 14.2 and iPadOS 14.2. A person with physical access to an iOS device may be able to access stored passwords without authentication.
- CVE-2020-28002MEDIUMCVSS 5.3EG 5.32020-11-02
In SonarQube 8.4.2.36762, an external attacker can achieve authentication bypass through SonarScanner. With an empty value for the -D sonar.login option, anonymous authentication is forced. This allows creating and overwriting public and p…
- CVE-2020-28050CRITICALCVSS 9.1EG 9.12021-03-05
Zoho ManageEngine Desktop Central before build 10.0.647 allows a single authentication secret from multiple agents to communicate with the server.
- CVE-2020-28086HIGHCVSS 7.5EG 7.52020-12-09
pass through 1.7.3 has a possibility of using a password for an unintended resource. For exploitation to occur, the user must do a git pull, decrypt a password, and log into a remote service with the password. If an attacker controls the c…
- CVE-2020-28333CRITICALCVSS 9.8EG 9.82020-11-24
Barco wePresent WiPG-1600W devices allow Authentication Bypass. Affected Version(s): 2.5.1.8. The Barco wePresent WiPG-1600W web interface does not use session cookies for tracking authenticated sessions. Instead, the web interface uses a …
- CVE-2020-28638CRITICALCVSS 9.8EG 9.82020-11-13
ask_password in Tomb 2.0 through 2.7 returns a warning when pinentry-curses is used and $DISPLAY is non-empty, causing affected users' files to be encrypted with "tomb {W] Detected DISPLAY, but only pinentry-curses is found." as the encryp…
- CVE-2020-28874HIGHCVSS 7.5EG 7.52021-01-26
reset-password.php in ProjectSend before r1295 allows remote attackers to reset a password because of incorrect business logic. Errors are not properly considered (an invalid token parameter).
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →