VYPR

CWE-287

Improper Authentication

ClassDraftLikelihood: High

Description

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-114 · CAPEC-115 · CAPEC-151 · CAPEC-194 · CAPEC-22 · CAPEC-57 · CAPEC-593 · CAPEC-633 · CAPEC-650 · CAPEC-94

CVEs mapped to this weakness (4,804)

page 204 of 241
  • CVE-2022-24882CriApr 26, 2022
    risk 0.00cvss 9.1epss 0.03

    FreeRDP is a free implementation of the Remote Desktop Protocol (RDP). In versions prior to 2.7.0, NT LAN Manager (NTLM) authentication does not properly abort when someone provides and empty password value. This issue affects FreeRDP based RDP Server implementations. RDP…

  • CVE-2022-24813MedApr 4, 2022
    risk 0.00cvss 5.3epss 0.01

    CreateWiki is Miraheze's MediaWiki extension for requesting & creating wikis. Without the patch for this issue, anonymous comments can be made using Special:RequestWikiQueue when sent directly via POST. A patch for this issue is available in the `master` branch of CreateWiki's…

  • CVE-2022-24740MedMar 14, 2022
    risk 0.00cvss 5.0epss 0.01

    Volto is a ReactJS-based frontend for the Plone Content Management System. Between versions 14.0.0-alpha.5 and 15.0.0-alpha.0, a user could have their authentication cookie replaced with an authentication cookie from another user, effectively giving them control of the other…

  • CVE-2021-41181LowMar 8, 2022
    risk 0.00cvss 2.4epss 0.00

    Nextcloud talk is a self hosting messaging service. In versions prior to 12.3.0 the Nextcloud Android Talk application did not properly detect the lockscreen state when a call was incoming. If an attacker got physical access to the locked phone, and the victim received a phone…

  • CVE-2022-23654HigFeb 22, 2022
    risk 0.00cvss 8.1epss 0.01

    Wiki.js is a wiki app built on Node.js. In affected versions an authenticated user with write access on a restricted set of paths can update a page outside the allowed paths by specifying a different target page ID while keeping the path intact. The access control incorrectly…

  • CVE-2022-24976CriFeb 14, 2022
    risk 0.00cvss 9.1epss 0.02

    Atheme IRC Services before 7.2.12, when used in conjunction with InspIRCd, allows authentication bypass by ending an IRC handshake at a certain point during a challenge-response login sequence.

  • CVE-2021-45331CriFeb 9, 2022
    risk 0.00cvss 9.8epss 0.01

    An Authentication Bypass vulnerability exists in Gitea before 1.5.0, which could let a malicious user gain privileges. If captured, the TOTP code for the 2FA can be submitted correctly more than once.

  • CVE-2022-23126CriJan 24, 2022
    risk 0.00cvss 9.8epss 0.02

    TeslaMate before 1.25.1 (when using the default Docker configuration) allows attackers to open doors of Tesla vehicles, start Keyless Driving, and interfere with vehicle operation en route. This occurs because an attacker can leverage Grafana login access to obtain a token for…

  • CVE-2022-21684MedJan 13, 2022
    risk 0.00cvss 4.3epss 0.01

    Discourse is an open source discussion platform. Versions prior to 2.7.13 in `stable`, 2.8.0.beta11 in `beta`, and 2.8.0.beta11 in `tests-passed` allow some users to log in to a community before they should be able to do so. A user invited via email to a forum with…

  • CVE-2021-45379HigDec 30, 2021
    risk 0.00cvss 8.8epss 0.01

    Glewlwyd 2.0.0, fixed in 2.6.1 is affected by an incorrect access control vulnerability. One user can attempt to log in as another user without its password.

  • CVE-2021-45890CriDec 27, 2021
    risk 0.00cvss 9.8epss 0.02

    basic/BasicAuthProvider.java in AuthGuard before 0.9.0 allows authentication via an inactive identifier.

  • CVE-2021-41157MedOct 26, 2021
    risk 0.00cvss 5.3epss 0.02

    FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. By default, SIP requests of the type SUBSCRIBE are not authenticated in the affected versions of…

  • CVE-2021-41317CriSep 17, 2021
    risk 0.00cvss 9.8epss 0.02

    XSS Hunter Express before 2021-09-17 does not properly enforce authentication requirements for paths.

  • CVE-2021-39215HigSep 15, 2021
    risk 0.00cvss 7.5epss 0.01

    Jitsi Meet is an open source video conferencing application. In versions prior to 2.0.5963, a Prosody module allows the use of symmetrical algorithms to validate JSON web tokens. This means that tokens generated by arbitrary sources can be used to gain authorization to protected…

  • CVE-2021-39196HigSep 7, 2021
    risk 0.00cvss 7.7epss 0.01

    pcapture is an open source dumpcap web service interface . In affected versions this vulnerability allows an authenticated but unprivileged user to use the REST API to capture and download packets with no capture filter and without adequate permissions. This is important because…

  • CVE-2021-32794MedJul 26, 2021
    risk 0.00cvss 6.8epss 0.01

    ArchiSteamFarm is a C# application with primary purpose of idling Steam cards from multiple accounts simultaneously. Due to a bug in ASF code `POST /Api/ASF` ASF API endpoint responsible for updating global ASF config incorrectly removed `IPCPassword` from the resulting config…

  • CVE-2021-32726HigJul 12, 2021
    risk 0.00cvss 7.1epss 0.02

    Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, webauthn tokens were not deleted after a user has been deleted. If a victim reused an earlier used username, the previous user could gain access to their account.…

  • CVE-2021-32646MedMay 28, 2021
    risk 0.00cvss 5.3epss 0.01

    Roomer is a discord bot cog (extension) which provides automatic voice channel generation as well as private voice and text channels. A vulnerability has been discovered allowing discord users to get the ``manage channel`` permissions in a private VC they have joined. This…

  • CVE-2021-31245MedMay 6, 2021
    risk 0.00cvss 5.9epss 0.02

    omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original password in a length dependent manner, which allows remote attackers to guess the password via a timing attack.

  • CVE-2021-31408MedApr 23, 2021
    risk 0.00cvss 6.3epss 0.00

    Authentication.logout() helper in com.vaadin:flow-client versions 5.0.0 prior to 6.0.0 (Vaadin 18), and 6.0.0 through 6.0.4 (Vaadin 19.0.0 through 19.0.3) uses incorrect HTTP method, which, in combination with Spring Security CSRF protection, allows local attackers to access…