CWE-287— Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.— MITRE CWE catalog
4,941 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-287page 83 of 99
- CVE-2025-15484CRITICALCVSS 9.1EG 9.12026-04-01
The Order Notification for WooCommerce WordPress plugin before 3.6.3 overrides WooCommerce's permission checks to grant full access to all unauthenticated requests, enabling complete read/write access to store resources like products, cou…
- CVE-2025-15581MEDIUMCVSS 4.7EG 4.72026-02-18
Orthanc versions before 1.12.10 are affected by an authorisation logic flaw in the application's HTTP Basic Authentication implementation. Successful exploitation could result in Privilege Escalation, potentially allowing full administr…
- CVE-2025-15586CRITICALCVSS 10.0EG 10.02026-02-19
OGP-Website installs prior git commit 52f865a4fba763594453068acf8fa9e3fc38d663 are affected by a type juggling flaw which if exploited can result in authentication bypass without knowledge of the victim account's password.
- CVE-2025-1723HIGHCVSS 8.1EG 8.12025-03-03
Zohocorp ManageEngine ADSelfService Plus versions 6510 and below are vulnerable to account takeover due to the session mishandling. Valid account holders in the setup only have the potential to exploit this bug.
- CVE-2025-1880LOWCVSS 2.0EG 2.02025-03-03
A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been classified as problematic. Affected is an unknown function of the component Device Pairing. The manipulation leads to authentication bypass by primary weakness. I…
- CVE-2025-20083HIGHCVSS 7.5EG 7.52025-05-13
Improper authentication in the firmware for the Intel(R) Slim Bootloader may allow a privileged user to potentially enable escalation of privilege via local access.
- CVE-2025-20160HIGHCVSS 8.1EG 8.12025-09-24
A vulnerability in the implementation of the TACACS+ protocol in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, remote attacker to view sensitive data or bypass authentication. This vulnerability exists be…
- CVE-2025-20730MEDIUMCVSS 6.7EG 6.72025-11-04
In preloader, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for…
- CVE-2025-21349MEDIUMCVSS 6.8EG 6.82025-02-11
Windows Remote Desktop Configuration Service Tampering Vulnerability
- CVE-2025-21450CRITICALCVSS 9.1EG 9.12025-07-08
Cryptographic issue occurs due to use of insecure connection method while downloading.
- CVE-2025-21618HIGHCVSS 7.5EG 7.52025-01-06
NiceGUI is an easy-to-use, Python-based UI framework. Prior to 2.9.1, authenticating with NiceGUI logged in the user for all browsers, including browsers in incognito mode. This vulnerability is fixed in 2.9.1.
- CVE-2025-22146CRITICALCVSS 9.1EG 9.12025-01-15
Sentry is a developer-first error tracking and performance monitoring tool. A critical vulnerability was discovered in the SAML SSO implementation of Sentry. It was reported to us via our private bug bounty program. The vulnerability allow…
- CVE-2025-22228HIGHCVSS 7.4EG 7.42025-03-20
BCryptPasswordEncoder.matches(CharSequence,String) will incorrectly return true for passwords larger than 72 characters as long as the first 72 characters are the same.
- CVE-2025-22232MEDIUMCVSS 5.3EG 5.32025-04-10
Spring Cloud Config Server may not use Vault token sent by clients using a X-CONFIG-TOKEN header when making requests to Vault. Your application may be affected by this if the following are true: * You have Spring Vault on the classpat…
- CVE-2025-22236HIGHCVSS 8.1EG 8.12025-06-13
Minion event bus authorization bypass. An attacker with access to a minion key can craft a message which may be able to execute a job on other minions (>= 3007.0).
- CVE-2025-2230HIGHCVSS 7.7EG 7.72025-03-13
A flaw exists in the Windows login flow where an AuthContext token can be exploited for replay attacks and authentication bypass.
- CVE-2025-22375CRITICALCVSS 9.3EG 9.32025-04-10
An authentication bypass vulnerability was found in Videx's CyberAudit-Web. Through the exploitation of a logic flaw, an attacker could create a valid session without any credentials. This vulnerability has been patched in versions later t…
- CVE-2025-22477HIGHCVSS 8.3EG 8.32025-05-06
Dell Storage Center - Dell Storage Manager, version(s) 20.1.20, contain(s) an Improper Authentication vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Elevatio…
- CVE-2025-23116CRITICALCVSS 9.6EG 9.62025-03-01
An Authentication Bypass vulnerability on UniFi Protect Application with Auto-Adopt Bridge Devices enabled could allow a malicious actor with access to UniFi Protect Cameras adjacent network to take control of UniFi Protect Cameras.
- CVE-2025-2339MEDIUMCVSS 5.3EG 5.32025-03-16
A vulnerability was found in otale Tale Blog 2.0.5. It has been classified as problematic. This affects an unknown part of the file /%61dmin/api/logs. The manipulation leads to improper authentication. It is possible to initiate the attack…
- CVE-2025-23419MEDIUMCVSS 4.3EG 4.32025-02-05
When multiple server blocks are configured to share the same IP address and port, an attacker can use session resumption to bypass client certificate authentication requirements on these servers. This vulnerability arises when TLS Session…
- CVE-2025-2344MEDIUMCVSS 5.3EG 5.32025-03-16
A vulnerability, which was classified as critical, has been found in IROAD Dash Cam X5 and Dash Cam X6 up to 20250308. Affected by this issue is some unknown functionality of the component API Endpoint. The manipulation leads to missing au…
- CVE-2025-2388HIGHCVSS 7.3EG 7.32025-03-17
A vulnerability was found in Keytop 路内停车收费系统 2.7.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /saas/commonApi/park/getParks of the component API. The manipulati…
- CVE-2025-24032CRITICALCVSS 9.2EG 9.22025-02-10
PAM-PKCS#11 is a Linux-PAM login module that allows a X.509 certificate based user login. Prior to version 0.6.13, if cert_policy is set to none (the default value), then pam_pkcs11 will only check if the user is capable of logging into th…
- CVE-2025-24292MEDIUMCVSS 6.8EG 6.82025-06-29
A misconfigured query in UniFi Network (v9.1.120 and earlier) could allow users to authenticate to Enterprise WiFi or VPN Server (l2tp and OpenVPN) using a device’s MAC address from 802.1X or MAC Authentication, if both services are ena…
- CVE-2025-24894CRITICALCVSS 9.1EG 9.12025-02-18
SPID.AspNetCore.Authentication is an AspNetCore Remote Authenticator for SPID. Authentication using Spid and CIE is based on the SAML2 standard which provides two entities: Identity Provider (IDP): the system that authenticates users and p…
- CVE-2025-24895CRITICALCVSS 9.1EG 9.12025-02-18
CIE.AspNetCore.Authentication is an AspNetCore Remote Authenticator for CIE 3.0. Authentication using Spid and CIE is based on the SAML2 standard which provides two entities: 1. Identity Provider (IDP): the system that authenticates users …
- CVE-2025-24904HIGHCVSS 8.5EG 8.52025-02-13
libsignal-service-rs is a Rust version of the libsignal-service-java library which implements the core functionality to communicate with Signal servers. Prior to commit 82d70f6720e762898f34ae76b0894b0297d9b2f8, plaintext content envelopes …
- CVE-2025-24949MEDIUMCVSS 6.5EG 6.52025-04-15
In JotUrl 2.0, is possible to bypass security requirements during the password change process.
- CVE-2025-25201MEDIUMCVSS 4.0EG 4.02025-02-12
Nitrokey 3 Firmware is the the firmware of Nitrokey 3 USB keys. For release 1.8.0, and test releases with PIV enabled prior to 1.8.0, the PIV application could accept invalid keys for authentication of the admin key. This could lead to com…
- CVE-2025-25205HIGHCVSS 8.2EG 8.22025-02-12
Audiobookshelf is a self-hosted audiobook and podcast server. Starting in version 2.17.0 and prior to version 2.19.1, a flaw in the authentication bypass logic allows unauthenticated requests to match certain unanchored regex patterns in t…
- CVE-2025-25227HIGHCVSS 7.5EG 7.52025-04-08
Insufficient state checks lead to a vector that allows to bypass 2FA checks.
- CVE-2025-25450MEDIUMCVSS 5.1EG 5.12025-03-06
An issue in TAAGSOLUTIONS GmbH MyTaag v.2024-11-24 and before allows a remote attacker to escalate privileges via the deactivation of the activated second factor to the /session endpoint
- CVE-2025-25451MEDIUMCVSS 5.1EG 5.12025-03-06
An issue in TAAGSOLUTIONS GmbH MyTaag v.2024-11-24 and before allows a physically proximate attacker to escalate privileges via the "2fa_authorized" Local Storage key
- CVE-2025-25452MEDIUMCVSS 5.1EG 5.12025-03-06
An issue in TAAGSOLUTIONS GmbH MyTaag v.2024-11-24 and before allows a remote attacker to escalate privileges via the "/user" endpoint
- CVE-2025-25504MEDIUMCVSS 6.5EG 6.52025-05-05
An issue in the /usr/local/bin/jncs.sh script of Gefen WebFWC (In AV over IP products) v1.85h, v1.86v, and v1.70 allows attackers with network access to connect to the device over TCP port 4444 without authentication and execute arbitrary …
- CVE-2025-2572MEDIUMCVSS 5.6EG 5.62025-04-14
In WhatsUp Gold versions released before 2024.0.3, a database manipulation vulnerability allows an unauthenticated attacker to modify the contents of WhatsUp.dbo.WrlsMacAddressGroup.
- CVE-2025-26326HIGHCVSS 8.8EG 8.82025-02-28
A vulnerability was identified in the NVDA Remote (version 2.6.4) and Tele NVDA Remote (version 2025.3.3) remote connection add-ons, which allows an attacker to obtain total control of the remote system by guessing a weak password. The pro…
- CVE-2025-26438HIGHCVSS 8.8EG 8.82025-09-04
In smp_process_secure_connection_oob_data of smp_act.cc, there is a possible way to bypass SMP authentication due to Incorrect implementation of a protocol. This could lead to remote escalation of privilege with no additional execution pri…
- CVE-2025-26475MEDIUMCVSS 5.5EG 5.52025-03-19
Dell Secure Connect Gateway (SCG) 5.0 Appliance - SRS, version(s) 5.26, Enables Live-Restore setting which enhances security by keeping containers running during daemon restarts, reducing attack exposure, preventing accidental misconfigura…
- CVE-2025-26685MEDIUMCVSS 6.5EG 6.52025-05-13
Improper authentication in Microsoft Defender for Identity allows an unauthorized attacker to perform spoofing over an adjacent network.
- CVE-2025-27086HIGHCVSS 8.1EG 8.12025-04-21
A vulnerability in the HPE Performance Cluster Manager (HPCM) GUI could allow an attacker to bypass authentication.
- CVE-2025-27112MEDIUMCVSS 6.5EG 6.52025-02-24
Navidrome is an open source web-based music collection server and streamer. Starting in version 0.52.0 and prior to version 0.54.5, in certain Subsonic API endpoints, a flaw in the authentication check process allows an attacker to specify…
- CVE-2025-27138CRITICALCVSS 9.8EG 9.82025-03-13
DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.6, there is a flaw in the authentication in the io.dataease.auth.filter.TokenFilter class, which may cause the risk of unauthorized access.…
- CVE-2025-27403HIGHCVSS 7.2EG 7.22025-03-11
Ratify is a verification engine as a binary executable and on Kubernetes which enables verification of artifact security metadata and admits for deployment only those that comply with policies the user creates. In a Kubernetes environment,…
- CVE-2025-27414MEDIUMCVSS 4.6EG 4.62025-02-28
MinIO is a high performance object storage. Starting in RELEASE.2024-06-06T09-36-42Z and prior to RELEASE.2025-02-28T09-55-16Z, a bug in evaluating the trust of the SSH key used in an SFTP connection to MinIO allows authentication bypass …
- CVE-2025-27416MEDIUMCVSS 5.9EG 5.92025-03-01
Scratch-Coding-Hut.github.io is the website for Coding Hut. The website as of 28 February 2025 contained a sign in with scratch username and password form. Any user who used the sign in page would be susceptible to any other user signing i…
- CVE-2025-27422HIGHCVSS 7.5EG 7.52025-03-03
FACTION is a PenTesting Report Generation and Collaboration Framework. Authentication is bypassed when an attacker registers a new user with admin privileges. This is possible at any time without any authorization. The request must follow …
- CVE-2025-27425MEDIUMCVSS 4.3EG 4.32025-03-04
Scanning certain QR codes that included text with a website URL could allow the URL to be opened without presenting the user with a confirmation alert first. This vulnerability was fixed in Firefox for iOS 136.
- CVE-2025-2746CRITICALCVSS 9.8EG 9.8⚠ KEV2025-03-24
An authentication bypass vulnerability in Kentico Xperience allows authentication bypass via the Staging Sync Server password handling of empty SHA1 usernames in digest authentication. Authentication bypass allows an attacker to control ad…
Map vulnerabilities like CWE-287 to your infrastructure
EchelonGraph correlates every CVE — across CWE-287 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →