VYPR

CWE-287

Improper Authentication

ClassDraftLikelihood: High

Description

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-114 · CAPEC-115 · CAPEC-151 · CAPEC-194 · CAPEC-22 · CAPEC-57 · CAPEC-593 · CAPEC-633 · CAPEC-650 · CAPEC-94

CVEs mapped to this weakness (4,804)

page 51 of 241
  • CVE-2025-44005CriDec 17, 2025
    risk 0.58cvss 10.0epss 0.04

    An attacker can bypass authorization checks and force a Step CA ACME or SCEP provisioner to create certificates without completing certain protocol authorization checks.

  • CVE-2025-54419CriJul 28, 2025
    risk 0.58cvss 10.0epss 0.00

    A SAML library not dependent on any frameworks that runs in Node. In version 5.0.1, Node-SAML loads the assertion from the (unsigned) original response document. This is different than the parts that are verified when checking signature. This allows an attacker to modify…

  • CVE-2025-46348CriApr 29, 2025
    risk 0.58cvss 10.0epss 0.01

    YesWiki is a wiki system written in PHP. Prior to version 4.5.4, the request to commence a site backup can be performed and downloaded without authentication. The archives are created with a predictable filename, so a malicious user could create and download an archive without…

  • CVE-2022-29165CriMay 20, 2022
    risk 0.58cvss 10.0epss 0.02

    Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. A critical vulnerability has been discovered in Argo CD starting with version 1.4.0 and prior to versions 2.1.15, 2.2.9, and 2.3.4 which would allow unauthenticated users to impersonate as any Argo CD user…

  • CVE-2021-32637CriMay 28, 2021
    risk 0.58cvss 10.0epss 0.02

    Authelia is a a single sign-on multi-factor portal for web apps. This affects uses who are using nginx ngx_http_auth_request_module with Authelia, it allows a malicious individual who crafts a malformed HTTP request to bypass the authentication mechanism. It additionally could…

  • CVE-2020-27866HigFeb 12, 2021
    risk 0.58cvss 8.8epss 0.09

    This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6020, R6080, R6120, R6220, R6260, R6700v2, R6800, R6900v2, R7450, JNR3210, WNR2020, Nighthawk AC2100, and Nighthawk AC2400 routers. Authentication is not required…

  • CVE-2020-24579HigDec 22, 2020
    risk 0.58cvss 8.8epss 0.10

    An issue was discovered on D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55. An unauthenticated attacker could bypass authentication to access authenticated pages and functionality.

  • CVE-2020-29669HigDec 14, 2020
    risk 0.58cvss 8.8epss 0.05

    In the Macally WIFISD2-2A82 Media and Travel Router 2.000.010, the Guest user is able to reset its own password. This process has a vulnerability which can be used to take over the administrator account and results in shell access. As the admin user may read the /etc/shadow…

  • CVE-2020-8862HigFeb 22, 2020
    risk 0.58cvss 8.8epss 0.13

    This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DAP-2610 Firmware v2.01RC067 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of passwords. The…

  • CVE-2020-8861HigFeb 22, 2020
    risk 0.58cvss 8.8epss 0.07

    This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DAP-1330 1.10B01 BETA Wi-Fi range extenders. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of HNAP login…

  • CVE-2013-1391HigOct 30, 2019
    risk 0.58cvss 7.5epss 0.76

    Authentication bypass vulnerability in the the web interface in Hunt CCTV, Capture CCTV, Hachi CCTV, NoVus CCTV, and Well-Vision Inc DVR systems allows a remote attacker to retrieve the device configuration.

  • CVE-2019-7226HigJun 27, 2019
    risk 0.58cvss 8.8epss 0.05

    The ABB IDAL HTTP server CGI interface contains a URL that allows an unauthenticated attacker to bypass authentication and gain access to privileged functions. Specifically, /cgi/loginDefaultUser creates a session in an authenticated state and returns the session ID along with…

  • CVE-2017-9389HigJun 17, 2019
    risk 0.58cvss 8.8epss 0.04

    An issue was discovered on Vera VeraEdge 1.7.19 and Veralite 1.7.481 devices. The device provides a web user interface that allows a user to manage the device. As a part of the functionality the device allows a user to install applications written in the Lua programming…

  • CVE-2018-1317HigApr 23, 2019
    risk 0.58cvss 8.8epss 0.05

    In Apache Zeppelin prior to 0.8.0 the cron scheduler was enabled by default and could allow users to run paragraphs as other users without authentication.

  • CVE-2018-19616HigDec 26, 2018
    risk 0.58cvss 8.1epss 0.30

    An issue was discovered in Rockwell Automation Allen-Bradley PowerMonitor 1000. An unauthenticated user can add/edit/remove administrators because access control is implemented on the client side via a disabled attribute for a BUTTON element.

  • CVE-2026-56654CriAug 13, 2026
    risk 0.57cvss 9.8epss 0.00

    Privilege Escalation via Access Token Scope Escalation in API

  • CVE-2026-62827HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.01

    Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

  • CVE-2026-51584CriAug 11, 2026
    risk 0.57cvss 9.8epss 0.00

    An issue in usememos v0.27.1 allows a remote attacker to achieve account takeover via the ssoCredentials branch of the SignIn handler in server/router/api/v1/auth_service.go, because SSO identity is matched only on an attacker-controllable identifier without binding to the IdP's…

  • CVE-2026-72533HigAug 11, 2026
    risk 0.57cvss 8.8epss 0.00

    An authentication bypass vulnerability in Portainer CE through 2.44.0 allows authenticated low-privileged users to bypass Docker proxy authorization checks via non-canonical URL normalization, defeating all authorization middleware. The proxy endpoint fails to normalize request…

  • CVE-2026-18786HigAug 10, 2026
    risk 0.57cvss 8.8epss 0.00

    The CheckView WordPress plugin before 2.3.2 does not restrict its REST API authentication filter to its own routes and unconditionally discards the authentication error raised for any request whose URI merely contains a CheckView WordPress plugin before 2.3.2-specific string,…