VYPR

CWE-287

Improper Authentication

ClassDraftLikelihood: High

Description

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-114 · CAPEC-115 · CAPEC-151 · CAPEC-194 · CAPEC-22 · CAPEC-57 · CAPEC-593 · CAPEC-633 · CAPEC-650 · CAPEC-94

CVEs mapped to this weakness (4,804)

page 151 of 241
  • CVE-2021-1561MedAug 18, 2021
    risk 0.35cvss 5.4epss 0.01

    A vulnerability in the spam quarantine feature of Cisco Secure Email and Web Manager, formerly Cisco Security Management Appliance (SMA), could allow an authenticated, remote attacker to gain unauthorized access and modify the spam quarantine settings of another user. This…

  • CVE-2021-20598MedAug 6, 2021
    risk 0.35cvss 5.3epss 0.02

    Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric MELSEC iQ-R series CPU modules (R08/16/32/120SFCPU all versions, R08/16/32/120PSFCPU all versions) allows a remote unauthenticated attacker to lockout a legitimate user by continuously trying login…

  • CVE-2021-25445MedAug 5, 2021
    risk 0.35cvss 5.3epss 0.01

    Unprotected component vulnerability in Samsung Internet prior to version 14.2 allows untrusted application to access internal files in Samsung Internet.

  • CVE-2020-21932MedJul 21, 2021
    risk 0.35cvss 5.3epss 0.01

    A vulnerability in /Login.html of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to bypass login and obtain a partially authorized token and uid.

  • CVE-2020-19037MedJul 12, 2021
    risk 0.35cvss 5.3epss 0.01

    Incorrect Access Control vulnearbility in Halo 0.4.3, which allows a malicious user to bypass encrption to view encrpted articles via cookies.

  • CVE-2021-32738MedJul 2, 2021
    risk 0.35cvss 6.5epss 0.01

    js-stellar-sdk is a Javascript library for communicating with a Stellar Horizon server. The `Utils.readChallengeTx` function used in SEP-10 Stellar Web Authentication states in its function documentation that it reads and validates the challenge transaction including verifying…

  • CVE-2021-24359MedJun 14, 2021
    risk 0.35cvss 5.3epss 0.01

    The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.11 did not properly check that a user requesting a password reset was the legitimate user, allowing an attacker to send an arbitrary reset password email to a registered user on behalf of the WordPress site.…

  • CVE-2021-22764MedJun 11, 2021
    risk 0.35cvss 5.3epss 0.02

    A CWE-287: Improper Authentication vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and PowerLogic EGX300 (see security notification for version infromation) that could cause loss of connectivity to the device via Modbus TCP protocol when an…

  • CVE-2020-15077MedJun 4, 2021
    risk 0.35cvss 5.3epss 0.01

    OpenVPN Access Server 2.8.7 and earlier versions allows a remote attackers to bypass authentication and access control channel data on servers configured with deferred authentication, which can be used to potentially trigger further information leaks.

  • CVE-2021-3424MedJun 1, 2021
    risk 0.35cvss 5.3epss 0.01

    A flaw was found in keycloak as shipped in Red Hat Single Sign-On 7.4 where IDN homograph attacks are possible. A malicious user can register himself with a name already registered and trick admin to grant him extra privileges.

  • CVE-2021-20278MedMay 28, 2021
    risk 0.35cvss 6.5epss 0.01

    An authentication bypass vulnerability was found in Kiali in versions before 1.31.0 when the authentication strategy `OpenID` is used. When RBAC is enabled, Kiali assumes that some of the token validation is handled by the underlying cluster. When OpenID `implicit flow` is used…

  • CVE-2021-32541MedMay 28, 2021
    risk 0.35cvss 5.3epss 0.02

    The CTS Web transaction system related to authentication and session management is implemented incorrectly, which allows remote unauthenticated attackers can send a large number of valid usernames, and force those logged-in account to log out, causing the user to be unable to…

  • CVE-2018-16496MedMay 26, 2021
    risk 0.35cvss 5.3epss 0.01

    In Versa Director, the un-authentication request found.

  • CVE-2020-26139MedMay 11, 2021
    risk 0.35cvss 5.3epss 0.06

    An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even though the sender has not yet successfully authenticated to the AP. This might be abused in projected Wi-Fi networks to launch denial-of-service attacks against…

  • CVE-2021-30158MedApr 6, 2021
    risk 0.35cvss 5.3epss 0.02

    An issue was discovered in MediaWiki before 1.31.12 and 1.32.x through 1.35.x before 1.35.2. Blocked users are unable to use Special:ResetTokens. This has security relevance because a blocked user might have accidentally shared a token, or might know that a token has been…

  • CVE-2021-3332MedMar 1, 2021
    risk 0.35cvss 5.3epss 0.02

    WPS Hide Login 1.6.1 allows remote attackers to bypass a protection mechanism via post_password.

  • CVE-2020-26834MedDec 9, 2020
    risk 0.35cvss 5.4epss 0.01

    SAP HANA Database, version - 2.0, does not correctly validate the username when performing SAML bearer token-based user authentication. It is possible to manipulate a valid existing SAML bearer token to authenticate as a user whose name is identical to the truncated username for…

  • CVE-2020-4771MedNov 23, 2020
    risk 0.35cvss 5.3epss 0.02

    IBM Spectrum Protect Operations Center 8.1.0.000 through 8.1.10.and 7.1.0.000 through 7.1.11 could allow a remote attacker to obtain sensitive information, caused by improper authentication of a websocket endpoint. By using known tools to subscribe to the websocket event stream,…

  • CVE-2020-8267MedNov 5, 2020
    risk 0.35cvss 5.3epss 0.01

    A security issue was found in UniFi Protect controller v1.14.10 and earlier.The authentication in the UniFi Protect controller API was using “x-token” improperly, allowing attackers to use the API to send authenticated messages without a valid token.This vulnerability was…

  • CVE-2020-28002MedNov 2, 2020
    risk 0.35cvss 5.3epss 0.01

    In SonarQube 8.4.2.36762, an external attacker can achieve authentication bypass through SonarScanner. With an empty value for the -D sonar.login option, anonymous authentication is forced. This allows creating and overwriting public and private projects via the /api/ce/submit…