CWE-287— Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.— MITRE CWE catalog
4,941 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 80 of 99
- CVE-2024-46434HIGHCVSS 8.8EG 8.82025-02-10
Tenda W18E V16.01.0.8(1625) suffers from authentication bypass in the web management portal allowing an unauthorized remote attacker to gain administrative access by sending a specially crafted HTTP request.
- CVE-2024-46943HIGHCVSS 7.5EG 7.52024-09-15
An issue was discovered in OpenDaylight Authentication, Authorization and Accounting (AAA) through 0.19.3. A rogue controller can join a cluster to impersonate an offline peer, even if this rogue controller does not possess the complete cl…
- CVE-2024-47070CRITICALCVSS 9.0EG 9.02024-09-27
authentik is an open-source identity provider. A vulnerability that exists in versions prior to 2024.8.3 and 2024.6.5 allows bypassing password login by adding X-Forwarded-For header with an unparsable IP address, e.g. `a`. This results in…
- CVE-2024-47078HIGHCVSS 8.1EG 8.12024-09-25
Meshtastic is an open source, off-grid, decentralized, mesh network. Meshtastic uses MQTT to communicate over an internet connection to a shared or private MQTT Server. Nodes can communicate directly via an internet connection or proxied t…
- CVE-2024-47080HIGHCVSS 8.7EG 8.72024-10-15
matrix-js-sdk is the Matrix Client-Server SDK for JavaScript and TypeScript. In matrix-js-sdk versions versions 9.11.0 through 34.7.0, the method `MatrixClient.sendSharedHistoryKeys` is vulnerable to interception by malicious homeservers. …
- CVE-2024-47125HIGHCVSS 8.1EG 8.12024-09-26
The goTenna Pro App does not authenticate public keys which allows an unauthenticated attacker to manipulate messages. It is advised to update your app to the current release for enhanced encryption protocols.
- CVE-2024-47127MEDIUMCVSS 6.5EG 6.52024-09-26
In the goTenna Pro App there is a vulnerability that makes it possible to inject any custom message with any GID and Callsign using a software defined radio in existing goTenna mesh networks. This vulnerability can be exploited if the d…
- CVE-2024-47174MEDIUMCVSS 5.9EG 5.92024-09-26
Nix is a package manager for Linux and other Unix systems. Starting in version 1.11 and prior to versions 2.18.8 and 2.24.8, `<nix/fetchurl.nix>` did not verify TLS certificates on HTTPS connections. This could lead to connection details s…
- CVE-2024-47218CRITICALCVSS 9.8EG 9.82024-09-22
An issue was discovered in vesoft NebulaGraph through 3.8.0. It allows bypassing authentication.
- CVE-2024-47533CRITICALCVSS 9.8EG 9.82024-11-18
Cobbler, a Linux installation server that allows for rapid setup of network installation environments, has an improper authentication vulnerability starting in version 3.0.0 and prior to versions 3.2.3 and 3.3.7. `utils.get_shared_secret()…
- CVE-2024-47761HIGHCVSS 7.2EG 7.22024-12-11
GLPI is a free asset and IT management software package. Starting in version 0.80 and prior to version 10.0.17, an administrator with access to the sent notifications contents can take control of an account with higher privileges. Version …
- CVE-2024-47768HIGHCVSS 8.1EG 8.12024-10-04
Lif Authentication Server is a server used by Lif to do various tasks regarding Lif accounts. This vulnerability has to do with the account recovery system where there does not appear to be a check to make sure the user has been sent the r…
- CVE-2024-47806HIGHCVSS 8.1EG 8.12024-10-02
Jenkins OpenId Connect Authentication Plugin 4.354.v321ce67a_1de8 and earlier does not check the `aud` (Audience) claim of an ID Token, allowing attackers to subvert the authentication flow, potentially gaining administrator access to Jenk…
- CVE-2024-47807HIGHCVSS 8.1EG 8.12024-10-02
Jenkins OpenId Connect Authentication Plugin 4.354.v321ce67a_1de8 and earlier does not check the `iss` (Issuer) claim of an ID Token, allowing attackers to subvert the authentication flow, potentially gaining administrator access to Jenkin…
- CVE-2024-4784MEDIUMCVSS 4.2EG 4.22024-08-08
An issue was discovered in GitLab EE starting from version 16.7 before 17.0.6, version 17.1 before 17.1.4 and 17.2 before 17.2.2 that allowed bypassing the password re-entry requirement to approve a policy.
- CVE-2024-48445CRITICALCVSS 9.8EG 9.82025-02-04
An issue in compop.ca ONLINE MALL v.3.5.3 allows a remote attacker to execute arbitrary code via the rid, tid, et, and ts parameters.
- CVE-2024-48859CRITICALCVSS 9.1EG 9.12024-12-06
An improper authentication vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow remote attackers to compromise the security of the system. We have already fixed the …
- CVE-2024-49039CRITICALCVSS 8.8EG 9.0⚠ KEV2024-11-12
Windows Task Scheduler Elevation of Privilege Vulnerability
- CVE-2024-49076HIGHCVSS 7.8EG 7.82024-12-12
Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
- CVE-2024-49376HIGHCVSS 8.8EG 8.82024-10-25
Autolab, a course management service that enables auto-graded programming assignments, has misconfigured reset password permissions in version 3.0.0. For email-based accounts, users with insufficient privileges could reset and theoreticall…
- CVE-2024-49755LOWCVSS 3.1EG 3.12024-10-28
Duende IdentityServer is an OpenID Connect and OAuth 2.x framework for ASP.NET Core. IdentityServer's local API authentication handler performs insufficient validation of the cnf claim in DPoP access tokens. This allows an attacker to use …
- CVE-2024-49757HIGHCVSS 7.5EG 7.52024-10-25
The open-source identity infrastructure software Zitadel allows administrators to disable the user self-registration. Due to a missing security check in versions prior to 2.64.0, 2.63.5, 2.62.7, 2.61.4, 2.60.4, 2.59.5, and 2.58.7, disablin…
- CVE-2024-5012HIGHCVSS 8.6EG 8.62024-06-25
In WhatsUp Gold versions released before 2023.1.3, there is a missing authentication vulnerability in WUGDataAccess.Credentials. This vulnerability allows unauthenticated attackers to disclose Windows Credentials stored in the product C…
- CVE-2024-50339MEDIUMCVSS 5.3EG 5.32024-12-12
GLPI is a free asset and IT management software package. Starting in version 9.5.0 and prior to version 10.0.17, an unauthenticated user can retrieve all the sessions IDs and use them to steal any valid session. Version 10.0.17 contains a …
- CVE-2024-50341LOWCVSS 3.1EG 3.12024-11-06
symfony/security-bundle is a module for the Symphony PHP framework which provides a tight integration of the Security component into the Symfony full-stack framework. The custom `user_checker` defined on a firewall is not called when Login…
- CVE-2024-5044LOWCVSS 3.7EG 3.72024-05-17
A vulnerability was found in Emlog Pro 2.3.4. It has been classified as problematic. This affects an unknown part of the component Cookie Handler. The manipulation of the argument AuthCookie leads to improper authentication. It is possible…
- CVE-2024-50478CRITICALCVSS 9.8EG 9.82024-10-28
Authentication Bypass by Primary Weakness vulnerability in Swoop 1-Click Login: Passwordless Authentication allows Authentication Bypass.This issue affects 1-Click Login: Passwordless Authentication: 1.4.5.
- CVE-2024-50640CRITICALCVSS 9.8EG 9.82025-08-20
jeewx-boot 1.3 has an authentication bypass vulnerability in the preHandle function
- CVE-2024-50641HIGHCVSS 8.1EG 8.12025-08-21
An authentication bypass vulnerability in PandoraNext-TokensTool v0.6.8 and before. An attacker can exploit this vulnerability to access API without any token.
- CVE-2024-50644CRITICALCVSS 9.8EG 9.82025-08-22
zhisheng17 blog 3.0.1-SNAPSHOT has an authentication bypass vulnerability. An attacker can exploit this vulnerability to access API without any token.
- CVE-2024-50645CRITICALCVSS 9.8EG 9.82025-08-22
MallChat v1.0-SNAPSHOT has an authentication bypass vulnerability. An attacker can exploit this vulnerability to access API without any token.
- CVE-2024-5174MEDIUMCVSS 5.3EG 5.32025-02-24
A flaw in Gliffy results in broken authentication through the reset functionality of the application.
- CVE-2024-51767HIGHCVSS 7.3EG 7.32025-07-14
An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
- CVE-2024-51996HIGHCVSS 7.5EG 7.52024-11-13
Symphony process is a module for the Symphony PHP framework which executes commands in sub-processes. When consuming a persisted remember-me cookie, Symfony does not check if the username persisted in the database matches the username atta…
- CVE-2024-51997HIGHCVSS 8.1EG 8.12024-11-08
Trustee is a set of tools and components for attesting confidential guests and providing secrets to them. The ART (**Attestation Results Token**) token, generated by AS, could be manipulated by MITM attacker, but the verifier (CoCo Verific…
- CVE-2024-5201HIGHCVSS 8.8EG 8.82024-05-23
Privilege Escalation in OpenText Dimensions RM allows an authenticated user to escalate there privilege to the privilege of another user via HTTP Request
- CVE-2024-52518MEDIUMCVSS 4.4EG 4.42024-11-15
Nextcloud Server is a self hosted personal cloud system. After an attacker got access to the session of a user or administrator, the attacker would be able to create, change or delete external storages without having to confirm the passwor…
- CVE-2024-52786CRITICALCVSS 9.8EG 9.82025-08-22
An authentication bypass vulnerability in anji-plus AJ-Report up to v1.4.2 allows unauthenticated attackers to execute arbitrary code via a crafted URL.
- CVE-2024-52968MEDIUMCVSS 6.7EG 6.72025-02-11
An improper authentication in Fortinet FortiClientMac 7.0.11 through 7.2.4 allows attacker to gain improper access to MacOS via empty password.
- CVE-2024-53704CRITICALCVSS 9.8EG 9.8⚠ KEV2025-01-09
An Improper Authentication vulnerability in the SSLVPN authentication mechanism allows a remote attacker to bypass authentication.
- CVE-2024-53990CRITICALCVSS 9.2EG 9.22024-12-02
The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process HTTP responses. When making any HTTP request, the automatically enabled and self-managed CookieStore (aka cookie jar) wil…
- CVE-2024-5432CRITICALCVSS 9.8EG 9.82024-06-20
The Lifeline Donation plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.2.6. This is due to insufficient verification on the user being supplied during the checkout through the plugin. This mak…
- CVE-2024-55886MEDIUMCVSS 6.9EG 6.92024-12-12
OpenSearch Data Prepper is a component of the OpenSearch project that accepts, filters, transforms, enriches, and routes data at scale. A vulnerability exists in the OpenTelemetry Logs source in Data Prepper starting inversion 2.1.0 and pr…
- CVE-2024-55925HIGHCVSS 7.5EG 7.52025-01-23
In Xerox Workplace Suite, an API restricted to specific hosts can be bypassed by manipulating the Host header. If the server improperly validates or trusts the Host header without verifying the actual destination, an attacker can forge a v…
- CVE-2024-55954HIGHCVSS 8.7EG 8.72025-01-16
OpenObserve is a cloud-native observability platform. A vulnerability in the user management endpoint `/api/{org_id}/users/{email_id}` allows an "Admin" role user to remove a "Root" user from the organization. This violates the intended pr…
- CVE-2024-56329HIGHCVSS 8.9EG 8.92024-12-20
Socialstream is a third-party package for Laravel Jetstream. It replaces the published authentication and profile scaffolding provided by Laravel Jetstream, with scaffolding that has support for Laravel Socialite. When linking a social acc…
- CVE-2024-56335HIGHCVSS 7.6EG 7.62024-12-20
vaultwarden is an unofficial Bitwarden compatible server written in Rust, formerly known as bitwarden_rs. In affected versions an attacker is capable of updating or deleting groups from an organization given a few conditions: 1. The attack…
- CVE-2024-56336CRITICALCVSS 9.8EG 9.82025-03-11
A vulnerability has been identified in SINAMICS S200 (All versions with serial number beginning with SZVS8, SZVS9, SZVS0 or SZVSN and the FS number is 02). The affected device contains an unlocked bootloader. This security oversight enable…
- CVE-2024-56445MEDIUMCVSS 4.3EG 4.32025-01-08
Instruction authentication bypass vulnerability in the Findnetwork module Impact: Successful exploitation of this vulnerability may cause features to perform abnormally.
- CVE-2024-5658MEDIUMCVSS 4.8EG 4.82024-06-06
The CraftCMS plugin Two-Factor Authentication through 3.3.3 allows reuse of TOTP tokens multiple times within the validity period.
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →