VYPR

CWE-287

Improper Authentication

ClassDraftLikelihood: High

Description

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-114 · CAPEC-115 · CAPEC-151 · CAPEC-194 · CAPEC-22 · CAPEC-57 · CAPEC-593 · CAPEC-633 · CAPEC-650 · CAPEC-94

CVEs mapped to this weakness (5,056)

page 96 of 253
  • CVE-2024-57490HigMar 21, 2025
    risk 0.50cvss 7.7epss 0.00

    Guangzhou Hongfan Technology Co., LTD. iOffice20 has any user login vulnerability. An attacker can log in to any system account including the system administrator through a logical flaw.

  • CVE-2025-2230HigMar 13, 2025
    risk 0.50cvss 7.7epss 0.00

    A flaw exists in the Windows login flow where an AuthContext token can be exploited for replay attacks and authentication bypass.

  • CVE-2024-55954HigJan 16, 2025
    risk 0.50cvss 8.7epss 0.01

    OpenObserve is a cloud-native observability platform. A vulnerability in the user management endpoint `/api/{org_id}/users/{email_id}` allows an "Admin" role user to remove a "Root" user from the organization. This violates the intended privilege hierarchy, enabling a non-root…

  • CVE-2024-49376HigOct 25, 2024
    risk 0.50cvss 8.8epss 0.00

    Autolab, a course management service that enables auto-graded programming assignments, has misconfigured reset password permissions in version 3.0.0. For email-based accounts, users with insufficient privileges could reset and theoretically access privileged users' accounts by…

  • CVE-2024-47080HigOct 15, 2024
    risk 0.50cvss —epss 0.01

    matrix-js-sdk is the Matrix Client-Server SDK for JavaScript and TypeScript. In matrix-js-sdk versions versions 9.11.0 through 34.7.0, the method `MatrixClient.sendSharedHistoryKeys` is vulnerable to interception by malicious homeservers. The method was introduced by MSC3061)…

  • CVE-2024-9313HigOct 3, 2024
    risk 0.50cvss 8.8epss 0.01

    Authd PAM module before version 0.3.5 can allow broker-managed users to impersonate any other user managed by the same broker and perform any PAM operation with it, including authenticating as them.

  • CVE-2024-28992HigJul 17, 2024
    risk 0.50cvss 7.6epss 0.02

    The SolarWinds Access Rights Manager was susceptible to a Directory Traversal and Information Disclosure Vulnerability. This vulnerability allows an unauthenticated user to perform arbitrary file deletion and leak sensitive information.

  • CVE-2024-27923HigMar 21, 2024
    risk 0.50cvss 8.8epss 0.01

    Grav is a content management system (CMS). Prior to version 1.7.43, users who may write a page may use the `frontmatter` feature due to insufficient permission validation and inadequate file name validation. This may lead to remote code execution. Version 1.7.43 fixes this issue.

  • CVE-2024-24771HigFeb 7, 2024
    risk 0.50cvss 7.7epss 0.01

    Open Forms allows users create and publish smart forms. Versions prior to 2.2.9, 2.3.7, 2.4.5, and 2.5.2 contain a non-exploitable multi-factor authentication weakness. Superusers who have their credentials (username + password) compromised could potentially have the…

  • CVE-2023-23761HigApr 7, 2023
    risk 0.50cvss 7.7epss 0.00

    An improper authentication vulnerability was identified in GitHub Enterprise Server that allowed an unauthorized actor to modify other users' secret gists by authenticating through an SSH certificate authority. To do so, a user had to know the secret gist's URL. This…

  • CVE-2022-45124HigMar 20, 2023
    risk 0.50cvss 7.5epss 0.13

    An information disclosure vulnerability exists in the User authentication functionality of WellinTech KingHistorian 35.01.00.05. A specially crafted network packet can lead to a disclosure of sensitive information. An attacker can sniff network traffic to leverage this…

  • CVE-2022-4874HigJan 11, 2023
    risk 0.50cvss 7.5epss 0.11

    Authentication bypass in Netcomm router models NF20MESH, NF20, and NL1902 allows an unauthenticated user to access content. In order to serve static content, the application performs a check for the existence of specific characters in the URL (.css, .png etc). If it exists, it…

  • CVE-2022-21794HigNov 11, 2022
    risk 0.50cvss 7.7epss 0.00

    Improper authentication in BIOS firmware for some Intel(R) NUC Boards, Intel(R) NUC Business, Intel(R) NUC Enthusiast, Intel(R) NUC Kits before version HN0067 may allow a privileged user to potentially enable escalation of privilege via local access.

  • CVE-2022-39267HigOct 19, 2022
    risk 0.50cvss 8.8epss 0.01

    Bifrost is a heterogeneous middleware that synchronizes MySQL, MariaDB to Redis, MongoDB, ClickHouse, MySQL and other services for production environments. Versions prior to 1.8.8-release are subject to authentication bypass in the admin and monitor user groups by deleting the…

  • CVE-2022-31020HigSep 6, 2022
    risk 0.50cvss 8.8epss 0.02

    Indy Node is the server portion of a distributed ledger purpose-built for decentralized identity. In versions 1.12.4 and prior, the `pool-upgrade` request handler in Indy-Node allows an improperly authenticated attacker to remotely execute code on nodes within the network. The…

  • CVE-2021-41995HigJun 30, 2022
    risk 0.50cvss 7.7epss 0.01

    A misconfiguration of RSA in PingID Mac Login prior to 1.1 is vulnerable to pre-computed dictionary attacks, leading to an offline MFA bypass.

  • CVE-2022-23723HigMay 2, 2022
    risk 0.50cvss 7.7epss 0.01

    An MFA bypass vulnerability exists in the PingFederate PingOne MFA Integration Kit when adapter HTML templates are used as part of an authentication flow.

  • CVE-2021-41992HigApr 30, 2022
    risk 0.50cvss 7.7epss 0.01

    A misconfiguration of RSA in PingID Windows Login prior to 2.7 is vulnerable to pre-computed dictionary attacks, leading to an offline MFA bypass.

  • CVE-2022-23652HigFeb 22, 2022
    risk 0.50cvss 8.8epss 0.01

    capsule-proxy is a reverse proxy for Capsule Operator which provides multi-tenancy in Kubernetes. In versions prior to 0.2.1 an attacker with a proper authentication mechanism may use a malicious `Connection` header to start a privilege escalation attack towards the Kubernetes…

  • CVE-2021-25036HigJan 17, 2022
    risk 0.50cvss 8.8epss 0.03

    The All in One SEO WordPress plugin before 4.1.5.3 is affected by a Privilege Escalation issue, which was discovered during an internal audit by the Jetpack Scan team, and may grant bad actors access to protected REST API endpoints they shouldn’t have access to. This could…