VYPR

CWE-290

Authentication Bypass by Spoofing

BaseIncomplete

Description

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-21 · CAPEC-22 · CAPEC-459 · CAPEC-461 · CAPEC-473 · CAPEC-476 · CAPEC-59 · CAPEC-60 · CAPEC-667 · CAPEC-94

CVEs mapped to this weakness (747)

page 22 of 38
  • CVE-2022-38164MedNov 7, 2022
    risk 0.42cvss 6.5epss 0.00

    A vulnerability affecting F-Secure SAFE browser for Android and iOS was discovered. A maliciously crafted website could make a phishing attack with URL spoofing as the browser only display certain part of the entire URL.

  • CVE-2022-35770MedOct 11, 2022
    risk 0.42cvss 6.5epss 0.02

    Windows NTLM Spoofing Vulnerability

  • CVE-2022-1129MedJul 23, 2022
    risk 0.42cvss 6.5epss 0.01

    Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 100.0.4896.60 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

  • CVE-2021-43807HigDec 14, 2021
    risk 0.42cvss 7.5epss 0.01

    Opencast is an Open Source Lecture Capture & Video Management for Education. Opencast versions prior to 9.10 allow HTTP method spoofing, allowing to change the assumed HTTP method via URL parameter. This allows attackers to turn HTTP GET requests into PUT requests or an HTTP…

  • CVE-2021-31209MedMay 11, 2021
    risk 0.42cvss 6.5epss 0.03

    Microsoft Exchange Server Spoofing Vulnerability

  • CVE-2021-23984MedMar 31, 2021
    risk 0.42cvss 6.5epss 0.01

    A malicious extension could have opened a popup window lacking an address bar. The title of the popup lacking an address bar should not be fully controllable, but in this situation was. This could have been used to spoof a website and attempt to trick the user into providing…

  • CVE-2019-25023MedFeb 27, 2021
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in Scytl sVote 2.1. Because the IP address from an X-Forwarded-For header (which can be manipulated client-side) is used for the internal application logs, an attacker can inject wrong IP addresses into these logs.

  • CVE-2020-24375MedOct 19, 2020
    risk 0.42cvss 6.5epss 0.01

    A DNS rebinding vulnerability in the UPnP MediaServer implementation in Freebox Server before 4.2.3.

  • CVE-2020-1329MedJun 9, 2020
    risk 0.42cvss 6.5epss 0.03

    A spoofing vulnerability exists when Microsoft Bing Search for Android improperly handles specific HTML content, aka 'Microsoft Bing Search Spoofing Vulnerability'.

  • CVE-2020-6808MedMar 25, 2020
    risk 0.42cvss 6.5epss 0.01

    When a JavaScript URL (javascript:) is evaluated and the result is a string, this string is parsed to create an HTML document, which is then presented. Previously, this document's URL (as reported by the document.location property, for example) was the originating javascript:…

  • CVE-2019-13709MedNov 25, 2019
    risk 0.42cvss 6.5epss 0.01

    Insufficient policy enforcement in downloads in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to bypass download restrictions via a crafted HTML page.

  • CVE-2019-10875MedApr 5, 2019
    risk 0.42cvss 6.5epss 0.02

    A URL spoofing vulnerability was found in all international versions of Xiaomi Mi browser 10.5.6-g (aka the MIUI native browser) and Mint Browser 1.5.3 due to the way they handle the "q" query parameter. The portion of an https URL before the ?q= substring is not shown to the…

  • CVE-2017-12095MedApr 5, 2018
    risk 0.42cvss 6.5epss 0.01

    An exploitable vulnerability exists in the WiFi Access Point feature of Circle with Disney running firmware 2.0.1. A series of WiFi packets can force Circle to setup an Access Point with default credentials. An attacker needs to send a series of spoofed "de-auth" packets to…

  • CVE-2017-12096MedNov 7, 2017
    risk 0.42cvss 6.5epss 0.01

    An exploitable vulnerability exists in the WiFi management of Circle with Disney. A crafted Access Point with the same name as the legitimate one can be used to make Circle connect to an untrusted network. An attacker needs to setup an Access Point reachable by the device and to…

  • CVE-2026-88819MedSep 14, 2026
    risk 0.41cvss —epss 0.00

    In Siglet current and past versions the refresh token handler do not enforce proof of possession of the issuer DID.

  • CVE-2026-6762MedApr 21, 2026
    risk 0.41cvss 6.3epss 0.00

    Spoofing issue in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.

  • CVE-2026-33131HigMar 20, 2026
    risk 0.41cvss 7.4epss 0.00

    H3 is a minimal H(TTP) framework. Versions 2.0.0-0 through 2.0.1-rc.14 contain a Host header spoofing vulnerability in the NodeRequestUrl (which extends FastURL) which allows middleware bypass. When event.url, event.url.hostname, or event.url._url is accessed, such as in a…

  • CVE-2025-23168MedJun 19, 2025
    risk 0.41cvss 6.3epss 0.00

    The Versa Director SD-WAN orchestration platform implements Two-Factor Authentication (2FA) using One-Time Passcodes (OTP) delivered via email or SMS. Versa Director accepts untrusted user input when dispatching 2FA codes, allowing an attacker who knows a valid username and…

  • CVE-2024-38807MedAug 23, 2024
    risk 0.41cvss 6.3epss 0.00

    Applications that use spring-boot-loader or spring-boot-loader-classic and contain custom code that performs signature verification of nested jar files may be vulnerable to signature forgery where content that appears to have been signed by one signer has, in fact, been signed…

  • CVE-2024-31802MedJun 27, 2024
    risk 0.41cvss 6.3epss 0.00

    DESIGNA ABACUS v.18 and before allows an attacker to bypass the payment process via a crafted QR code.