CWE-287— Improper Authentication
4,340 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 81 of 87
- CVE-2025-55234HIGHCVSS 8.8EG 8.82025-09-09
SMB Server might be susceptible to relay attacks depending on the configuration. An attacker who successfully exploited these vulnerabilities could perform relay attacks and make the users subject to elevation of privilege attacks. The SMB…
- CVE-2025-55241CRITICALCVSS 10.0EG 9.02025-09-04
Azure Entra ID Elevation of Privilege Vulnerability
- CVE-2025-55293CRITICALCVSS 9.4EG 9.42025-08-18
Meshtastic is an open source mesh networking solution. Prior to v2.6.3, an attacker can send NodeInfo with a empty publicKey first, then overwrite it with a new key. First sending a empty key bypasses 'if (p.public_key.size > 0) {', cleari…
- CVE-2025-55340HIGHCVSS 7.0EG 7.02025-10-14
Improper authentication in Windows Remote Desktop Protocol allows an authorized attacker to bypass a security feature locally.
- CVE-2025-5597CRITICALCVSS 10.0EG 0.02025-06-04
Improper Authentication vulnerability in WF Steuerungstechnik GmbH airleader MASTER allows Authentication Bypass.This issue affects airleader MASTER: 3.00571.
- CVE-2025-56333CRITICALCVSS 9.8EG 9.82025-12-29
An issue in Fossorial fosrl/pangolin v.1.6.2 and before allows a remote attacker to escalate privileges via the 2FA component
- CVE-2025-56447CRITICALCVSS 9.8EG 9.82025-10-22
TM2 Monitoring v3.04 contains an authentication bypass and plaintext credential disclosure.
- CVE-2025-56578MEDIUMCVSS 5.7EG 5.72025-09-10
An issue in RTSPtoWeb v.2.4.3 allows a remote attacker to obtain sensitive information and executearbitrary code via the lack of authentication mechanisms
- CVE-2025-56752CRITICALCVSS 9.4EG 9.42025-09-03
A vulnerability in the Ruijie RG-ES series switch firmware ESW_1.0(1)B1P39 enables remote attackers to fully bypass authentication mechanisms, providing them with unrestricted access to alter administrative settings and potentially seize c…
- CVE-2025-56764MEDIUMCVSS 5.3EG 6.52025-09-29
Trivision NC-227WF firmware 5.80 (build 20141010) login mechanism reveals whether a username exists or not by returning different error messages ("Unknown user" vs. "Wrong password"), allowing an attacker to enumerate valid usernames.
- CVE-2025-57278HIGHCVSS 8.8EG 8.82025-09-09
The LB-Link BL-CPE300M AX300 4G LTE Router firmware version BL-R8800_B10_ALK_SL_V01.01.02P42U14_06 does not implement proper session handling. After a user authenticates from a specific IP address, the router grants access to any other cli…
- CVE-2025-57434HIGHCVSS 8.8EG 8.82025-09-22
Creacast Creabox Manager contains a critical authentication flaw that allows an attacker to bypass login validation. The system grants access when the username is creabox and the password begins with the string creacast, regardless of what…
- CVE-2025-58060HIGHCVSS 8.0EG 8.02025-09-11
OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 and earlier, when the `AuthType` is set to anything but `Basic`, if the request contains an `Authorization: Basic ...` …
- CVE-2025-58065MEDIUMCVSS 6.5EG 6.52025-09-11
Flask-AppBuilder is an application development framework. Prior to version 4.8.1, when Flask-AppBuilder is configured to use OAuth, LDAP, or other non-database authentication methods, the password reset endpoint remains registered and acce…
- CVE-2025-58443CRITICALCVSS 9.1EG 9.12025-09-06
FOG is a free open-source cloning/imaging/rescue suite/inventory management system. Versions 1.5.10.1673 and below contain an authentication bypass vulnerability. It is possible for an attacker to perform an unauthenticated DB dump where t…
- CVE-2025-5870HIGHCVSS 7.3EG 7.32025-06-09
A vulnerability has been found in TRENDnet TV-IP121W 1.1.1 Build 36 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/setup.cgi of the component Web Interface. The manipulation leads …
- CVE-2025-5871MEDIUMCVSS 5.3EG 5.32025-06-09
A vulnerability was found in Papendorf SOL Connect Center 3.3.0.0 and classified as problematic. Affected by this issue is some unknown functionality of the component Web Interface. The manipulation leads to missing authentication. The att…
- CVE-2025-5872MEDIUMCVSS 5.3EG 5.32025-06-09
A vulnerability was found in eGauge EG3000 Energy Monitor 3.6.3. It has been classified as problematic. This affects an unknown part of the component Setting Handler. The manipulation leads to missing authentication. It is possible to init…
- CVE-2025-5876MEDIUMCVSS 5.3EG 5.32025-06-09
A vulnerability classified as problematic was found in Lucky LM-520-SC, LM-520-FSC and LM-520-FSC-SAM up to 20250321. Affected by this vulnerability is an unknown functionality. The manipulation leads to missing authentication. The attack …
- CVE-2025-5906HIGHCVSS 7.3EG 7.32025-06-10
A vulnerability classified as critical has been found in code-projects Laundry System 1.0. This affects an unknown part of the file /data/. The manipulation leads to missing authentication. It is possible to initiate the attack remotely. T…
- CVE-2025-59280LOWCVSS 3.1EG 3.12025-10-14
Improper authentication in Windows SMB Client allows an unauthorized attacker to perform tampering over a network.
- CVE-2025-59704MEDIUMCVSS 4.6EG 4.62025-12-02
Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow an attacker to gain access the the BIOS menu because is has no password.
- CVE-2025-5985HIGHCVSS 7.3EG 7.32025-06-10
A vulnerability was found in code-projects School Fees Payment System 1.0 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper authentication. The attack may be launched remot…
- CVE-2025-59934CRITICALCVSS 9.4EG 9.42025-09-26
Formbricks is an open source qualtrics alternative. Prior to version 4.0.1, Formbricks is missing JWT signature verification. This vulnerability stems from a token validation routine that only decodes JWTs (jwt.decode) without verifying th…
- CVE-2025-60306CRITICALCVSS 9.9EG 9.92025-10-10
code-projects Simple Car Rental System 1.0 has a permission bypass issue where low privilege users can forge high privilege sessions and perform sensitive operations.
- CVE-2025-60424HIGHCVSS 7.6EG 7.62025-10-27
A lack of rate limiting in the OTP verification component of Nagios Fusion v2024R1.2 and v2024R2 allows attackers to bypass authentication via a bruteforce attack.
- CVE-2025-6044MEDIUMCVSS 6.1EG 6.12025-07-07
An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version 16238.64.0 on the garaged stylus devices allows a physical attacker to bypass the lock screen and access user files by removing the stylus wh…
- CVE-2025-60534CRITICALCVSS 9.8EG 9.82026-01-06
Blue Access Cobalt v02.000.195 suffers from an authentication bypass vulnerability, which allows an attacker to selectively proxy requests in order to operate functionality on the web application without the need to authenticate with legit…
- CVE-2025-60772CRITICALCVSS 9.8EG 9.82025-10-21
Improper authentication in the web-based management interface of NETLINK HG322G V1.0.00-231017, allows a remote unauthenticated attacker to escalate privileges and lock out the legitimate administrator via crafted HTTP requests.
- CVE-2025-6083MEDIUMCVSS 4.3EG 4.32025-06-13
In ExtremeCloud Universal ZTNA, a syntax error in the 'searchKeyword' condition caused queries to bypass the owner_id filter. This issue may allow users to search data across the entire table instead of being restricted to their specific o…
- CVE-2025-61665HIGHCVSS 7.5EG 7.52025-10-02
WeGIA is an open source web manager with a focus on charitable institutions. Versions 3.4.12 and below contain a Broken Access Control vulnerability, identified in the get_relatorios_socios.php endpoint. This vulnerability allows unauthent…
- CVE-2025-61679HIGHCVSS 7.7EG 7.72025-10-03
Anyquery is an SQL query engine built on top of SQLite. Versions 0.4.3 and below allow attackers who have already gained access to localhost, even with low privileges, to use the http server through the port unauthenticated, and access pri…
- CVE-2025-6172CRITICALCVSS 9.8EG 9.82025-06-16
Permission vulnerability in the mobile application (com.afmobi.boomplayer) may lead to the risk of unauthorized operation.
- CVE-2025-61882CRITICALCVSS 9.8EG 9.8⚠ KEV2025-10-05
Vulnerability in the Oracle Concurrent Processing product of Oracle E-Business Suite (component: BI Publisher Integration). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows unauthenticated a…
- CVE-2025-61884HIGHCVSS 7.5EG 9.0⚠ KEV2025-10-12
Vulnerability in the Oracle Configurator product of Oracle E-Business Suite (component: Runtime UI). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network ac…
- CVE-2025-61922CRITICALCVSS 9.1EG 9.12025-10-16
PrestaShop Checkout is the PrestaShop official payment module in partnership with PayPal. Starting in version 1.3.0 and prior to versions 4.4.1 and 5.0.5, missing validation on the Express Checkout feature allows silent login, enabling acc…
- CVE-2025-62169HIGHCVSS 8.1EG 8.12025-10-23
OctoPrint-SpoolManager is a plugin for managing spools and all their usage metadata. In versions 1.8.0a2 and older of the testing branch and versions 1.7.7 and older of the stable branch, the APIs of the OctoPrint-SpoolManager plugin do no…
- CVE-2025-62349MEDIUMCVSS 6.2EG 6.22026-01-30
Salt contains an authentication protocol version downgrade weakness that can allow a malicious minion to bypass newer authentication/security features by using an older request payload format, enabling minion impersonation and circumventin…
- CVE-2025-62376CRITICALCVSS 9.5EG 9.52025-10-14
pwn.college DOJO is an education platform for learning cybersecurity. Prior to commit 467db0b9ea0d9a929dc89b41f6eb59f7cfc68bef, the /workspace endpoint contains an improper authentication vulnerability that allows an attacker to access any…
- CVE-2025-62398MEDIUMCVSS 5.4EG 5.42025-10-23
A serious authentication flaw allowed attackers with valid credentials to bypass multi-factor authentication under certain conditions, potentially compromising user accounts.
- CVE-2025-62717CRITICALCVSS 9.1EG 9.12025-10-24
Emlog is an open source website building system. In version 2.5.23, Emlog Pro is vulnerable to a session verification code error due to a clearing logic error. This means the verification code could be reused anywhere an email verification…
- CVE-2025-63207CRITICALCVSS 9.8EG 9.82025-11-19
The R.V.R Elettronica TEX product (firmware TEXL-000400, Web GUI TLAN-000400) is vulnerable to broken access control due to improper authentication checks on the /_Passwd.html endpoint. An attacker can send an unauthenticated POST request …
- CVE-2025-63210CRITICALCVSS 9.8EG 9.82025-11-19
The Newtec Celox UHD (models: CELOXA504, CELOXA820) running firmware version celox-21.6.13 is vulnerable to an authentication bypass. An attacker can exploit this issue by modifying intercepted responses from the /celoxservice endpoint. By…
- CVE-2025-63216CRITICALCVSS 10.0EG 10.02025-11-18
The Itel DAB Gateway (IDGat build c041640a) is vulnerable to Authentication Bypass due to improper JWT validation across devices. Attackers can reuse a valid JWT token obtained from one device to authenticate and gain administrative access…
- CVE-2025-63224CRITICALCVSS 10.0EG 10.02025-11-19
The Itel DAB Encoder (IDEnc build 25aec8d) is vulnerable to Authentication Bypass due to improper JWT validation across devices. Attackers can reuse a valid JWT token obtained from one device to authenticate and gain administrative access …
- CVE-2025-64055CRITICALCVSS 9.8EG 9.82025-12-03
An issue was discovered in Fanvil x210 V2 2.12.20 allowing unauthenticated attackers on the local network to access administrative functions of the device (e.g. file upload, firmware update, reboot...) via a crafted authentication bypass.
- CVE-2025-64103CRITICALCVSS 9.8EG 9.82025-10-29
Starting from 2.53.6, 2.54.3, and 2.55.0, Zitadel only required multi factor authentication in case the login policy has either enabled requireMFA or requireMFAForLocalUsers. If a user has set up MFA without this requirement, Zitadel would…
- CVE-2025-64175HIGHCVSS 8.8EG 8.82026-02-06
Gogs is an open source self-hosted Git service. In version 0.13.3 and prior, Gogs’ 2FA recovery code validation does not scope codes by user, enabling cross-account bypass. If an attacker knows a victim’s username and password, they ca…
- CVE-2025-64423HIGHCVSS 8.8EG 8.82026-01-05
Coolify is an open-source and self-hostable tool for managing servers, applications, and databases. In Coolify versions up to and including v4.0.0-beta.434, a low privileged user (member) can see and use invitation links sent to an adminis…
- CVE-2025-64432MEDIUMCVSS 4.7EG 4.72025-11-07
KubeVirt is a virtual machine management add-on for Kubernetes. Versions 1.5.3 and below, and 1.6.0 contained a flawed implementation of the Kubernetes aggregation layer's authentication flow which could enable bypass of RBAC controls. It …
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →