CWE-287— Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.— MITRE CWE catalog
4,937 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 68 of 99
- CVE-2023-2024CRITICALCVSS 10.0EG 10.02023-05-18
Improper authentication in OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 allow access to an unauthorized user under certain circumstances.
- CVE-2023-20252CRITICALCVSS 9.8EG 9.82023-09-27
A vulnerability in the Security Assertion Markup Language (SAML) APIs of Cisco Catalyst SD-WAN Manager Software could allow an unauthenticated, remote attacker to gain unauthorized access to the application as an arbitrary user. This vu…
- CVE-2023-2027CRITICALCVSS 9.8EG 9.82023-04-15
The ZM Ajax Login & Register plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.0.2. This is due to insufficient verification on the user being supplied during a Facebook login through the plugi…
- CVE-2023-20867CRITICALCVSS 3.9EG 9.0⚠ KEV2023-06-13
A fully compromised ESXi host can force VMware Tools to fail to authenticate host-to-guest operations, impacting the confidentiality and integrity of the guest virtual machine.
- CVE-2023-20924MEDIUMCVSS 6.8EG 6.82023-01-26
In (TBD) of (TBD), there is a possible way to bypass the lockscreen due to Biometric Auth Failure. This could lead to local escalation of privilege with physical access to the device with no additional execution privileges needed. User int…
- CVE-2023-21027HIGHCVSS 7.5EG 7.52023-03-24
In multiple functions of PasspointXmlUtils.java, there is a possible authentication misconfiguration due to a logic error in the code. This could lead to remote information disclosure with no additional execution privileges needed. User in…
- CVE-2023-21297MEDIUMCVSS 4.4EG 4.42023-10-30
In SEPolicy, there is a possible way to access the factory MAC address due to a permissions bypass. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
- CVE-2023-21307MEDIUMCVSS 5.0EG 5.02023-10-30
In Bluetooth, there is a possible way for a paired Bluetooth device to access a long term identifier for an Android device due to a permissions bypass. This could lead to local information disclosure with no additional execution privileges…
- CVE-2023-21419HIGHCVSS 4.3EG 7.52023-02-09
An improper implementation logic in Secure Folder prior to SMR Jan-2023 Release 1 allows the Secure Folder container remain unlocked under certain condition.
- CVE-2023-21425MEDIUMCVSS 4.3EG 5.52023-02-09
Improper access control vulnerability in telecom application prior to SMR JAN-2023 Release 1 allows local attackers to get sensitive information.
- CVE-2023-21437MEDIUMCVSS 4.0EG 5.52023-02-09
Improper access control vulnerability in Phone application prior to SMR Feb-2023 Release 1 allows local attackers to access sensitive information via implicit broadcast.
- CVE-2023-21455CRITICALCVSS 5.9EG 9.12023-03-16
Improper authorization implementation in Exynos baseband prior to SMR Mar-2023 Release 1 allows incorrect handling of unencrypted message.
- CVE-2023-21460MEDIUMCVSS 4.4EG 4.42023-03-16
Improper authentication in SecSettings prior to SMR Mar-2023 Release 1 allows attacker to reset the setting.
- CVE-2023-21466LOWCVSS 5.3EG 3.32025-09-03
PendingIntent hijacking vulnerability in CertificatePolicy in framework prior to SMR Apr-2023 Release 1 allows local attackers to access contentProvider without proper permission.
- CVE-2023-21467CRITICALCVSS 4.6EG 9.82025-09-03
Error in 3GPP specification implementation in Exynos baseband prior to SMR Apr-2023 Release 1 allows incorrect handling of unencrypted message.
- CVE-2023-21471LOWCVSS 4.0EG 3.32025-09-03
Improper access control vulnerability in SemClipboard prior to SMR Apr-2023 Release 1 allows attackers to read arbitrary files with system permission.
- CVE-2023-21484MEDIUMCVSS 5.1EG 5.12023-05-04
Improper access control vulnerability in AppLock prior to SMR May-2023 Release 1 allows local attackers without proper permission to execute a privileged operation.
- CVE-2023-21487MEDIUMCVSS 5.1EG 5.12023-05-04
Improper access control vulnerability in Telephony framework prior to SMR May-2023 Release 1 allows local attackers to change a call setting.
- CVE-2023-21626HIGHCVSS 7.1EG 7.12023-08-08
Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key.
- CVE-2023-21721MEDIUMCVSS 6.5EG 6.52023-02-14
Microsoft OneNote Elevation of Privilege Vulnerability
- CVE-2023-21817HIGHCVSS 7.8EG 7.82023-02-14
Windows Kerberos Elevation of Privilege Vulnerability
- CVE-2023-21841HIGHCVSS 7.5EG 7.52023-01-18
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.3.0, 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated at…
- CVE-2023-22278MEDIUMCVSS 5.3EG 5.32023-01-17
m-FILTER prior to Ver.5.70R01 (Ver.5 Series) and m-FILTER prior to Ver.4.87R04 (Ver.4 Series) allows a remote unauthenticated attacker to bypass authentication and send users' unintended email when email is being sent under the certain con…
- CVE-2023-22303CRITICALCVSS 9.8EG 9.82023-01-17
TP-Link SG105PE firmware prior to 'TL-SG105PE(UN) 1.0_1.0.0 Build 20221208' contains an authentication bypass vulnerability. Under the certain conditions, an attacker may impersonate an administrator of the product. As a result, informatio…
- CVE-2023-22334MEDIUMCVSS 5.3EG 5.32023-01-20
Use of password hash instead of password for authentication vulnerability in CONPROSYS HMI System (CHS) Ver.3.4.5 and earlier allows a remote authenticated attacker to obtain user credentials information via a man-in-the-middle attack.
- CVE-2023-22497MEDIUMCVSS 6.5EG 6.52023-01-14
Netdata is an open source option for real-time infrastructure monitoring and troubleshooting. Each Netdata Agent has an automatically generated MACHINE GUID. It is generated when the agent first starts and it is saved to disk, so that it w…
- CVE-2023-22501CRITICALCVSS 9.1EG 9.12023-02-01
An authentication vulnerability was discovered in Jira Service Management Server and Data Center which allows an attacker to impersonate another user and gain access to a Jira Service Management instance under certain circumstances_._ With…
- CVE-2023-22644MEDIUMCVSS 5.5EG 5.52023-09-20
A user can reverse engineer the JWT token (JSON Web Token) used in authentication for Manager and API access, forging a valid NeuVector Token to perform malicious activity in NeuVector. This can lead to an RCE.
- CVE-2023-22650HIGHCVSS 8.8EG 8.82024-10-16
A vulnerability has been identified in which Rancher does not automatically clean up a user which has been deleted from the configured authentication provider (AP). This characteristic also applies to disabled or revoked users, Rancher wil…
- CVE-2023-22663MEDIUMCVSS 5.9EG 5.92023-11-14
Improper authentication for some Intel Unison software may allow an authenticated user to potentially enable escalation of privilege via network access.
- CVE-2023-2283MEDIUMCVSS 6.5EG 6.52023-05-26
A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pki_verify_data_signature` function in memory allocation problems. This issue may happen if there is insufficient memory or…
- CVE-2023-22893HIGHCVSS 7.5EG 7.52023-04-19
Strapi through 4.5.5 does not verify the access or ID tokens issued during the OAuth flow when the AWS Cognito login provider is used for authentication. A remote attacker could forge an ID token that is signed using the 'None' type algori…
- CVE-2023-22964CRITICALCVSS 9.1EG 9.12023-01-20
Zoho ManageEngine ServiceDesk Plus MSP before 10611, and 13x before 13004, is vulnerable to authentication bypass when LDAP authentication is enabled.
- CVE-2023-2297CRITICALCVSS 9.8EG 9.82023-04-27
The Profile Builder – User Profile & User Registration Forms plugin for WordPress is vulnerable to unauthorized password resets in versions up to, and including 3.9.0. This is due to the plugin using native password reset functionality,…
- CVE-2023-23450MEDIUMCVSS 6.2EG 6.22023-05-15
Use of Password Hash Instead of Password for Authentication in SICK FTMg AIR FLOW SENSOR with Partnumbers 1100214, 1100215, 1100216, 1120114, 1120116, 1122524, 1122526 allows an unprivileged remote attacker to use a password hash instead o…
- CVE-2023-23460CRITICALCVSS 9.1EG 9.82023-02-15
Priority Web version 19.1.0.68, parameter manipulation on an unspecified end-point may allow authentication bypass.
- CVE-2023-23493LOWCVSS 3.3EG 3.32023-02-27
A logic issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.2, macOS Monterey 12.6.3. An encrypted volume may be unmounted and remounted by a different user without prompting for the password.
- CVE-2023-23612MEDIUMCVSS 4.7EG 4.72023-01-26
OpenSearch is an open source distributed and RESTful search engine. OpenSearch uses JWTs to store role claims obtained from the Identity Provider (IdP) when the authentication backend is SAML or OpenID Connect. There is an issue in how tho…
- CVE-2023-23632HIGHCVSS 7.8EG 7.82023-10-12
BeyondTrust Privileged Remote Access (PRA) versions 22.2.x to 22.4.x are vulnerable to a local authentication bypass. Attackers can exploit a flawed secret verification process in the BYOT shell jump sessions, allowing unauthorized access …
- CVE-2023-23761HIGHCVSS 7.7EG 7.72023-04-07
An improper authentication vulnerability was identified in GitHub Enterprise Server that allowed an unauthorized actor to modify other users' secret gists by authenticating through an SSH certificate authority. To do so, a user had to know…
- CVE-2023-23857CRITICALCVSS 9.9EG 9.92023-03-14
Due to missing authentication check, SAP NetWeaver AS for Java - version 7.50, allows an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access services which can be used to perfo…
- CVE-2023-24093CRITICALCVSS 9.8EG 9.82023-02-22
An access control issue in H3C A210-G A210-GV100R005 allows attackers to authenticate without a password.
- CVE-2023-2437CRITICALCVSS 9.8EG 9.82023-11-22
The UserPro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.1.1. This is due to insufficient verification on the user being supplied during a Facebook login through the plugin. This makes it …
- CVE-2023-24479CRITICALCVSS 9.8EG 9.82023-10-11
An authentication bypass vulnerability exists in the httpd nvram.cgi functionality of Yifan YF325 v1.0_20221108. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger…
- CVE-2023-24830HIGHCVSS 7.5EG 7.52023-01-30
Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects iotdb-web-workbench component: from 0.13.0 before 0.13.3.
- CVE-2023-24831CRITICALCVSS 9.8EG 9.82023-04-17
Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects Apache IoTDB Grafana Connector: from 0.13.0 through 0.13.3. Attackers could login without authorization. This is fixed in 0.13.4.
- CVE-2023-24852HIGHCVSS 8.4EG 8.42023-11-07
Memory Corruption in Core due to secure memory access by user while loading modem image.
- CVE-2023-2499CRITICALCVSS 9.8EG 9.82023-05-16
The RegistrationMagic plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.2.1.0. This is due to insufficient verification on the user being supplied during a Google social login through the plugi…
- CVE-2023-25131CRITICALCVSS 9.4EG 9.42023-04-24
Use of default password vulnerability in PowerPanel Business Local/Remote for Windows v4.8.6 and earlier, PowerPanel Business Management for Windows v4.8.6 and earlier, PowerPanel Business Local/Remote for Linux 32bit v4.8.6 and earlier, P…
- CVE-2023-25264HIGHCVSS 7.5EG 7.52023-02-28
An issue was discovered in Docmosis Tornado prior to version 2.9.5. An unauthenticated attacker can bypass the authentication check filter completely by introducing a specially crafted request with relative path segments.
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →