VYPR

CWE-290

Authentication Bypass by Spoofing

BaseIncomplete

Description

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-21 · CAPEC-22 · CAPEC-459 · CAPEC-461 · CAPEC-473 · CAPEC-476 · CAPEC-59 · CAPEC-60 · CAPEC-667 · CAPEC-94

CVEs mapped to this weakness (747)

page 25 of 38
  • CVE-2023-28803MedOct 23, 2023
    risk 0.38cvss 5.9epss 0.00

    An authentication bypass by spoofing of a device with a synthetic IP address is possible in Zscaler Client Connector on Windows, allowing a functionality bypass. This issue affects Client Connector: before 3.9.

  • CVE-2022-38712MedNov 3, 2022
    risk 0.38cvss 5.9epss 0.01

    "IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 Web services could allow a man-in-the-middle attacker to conduct SOAPAction spoofing to execute unwanted or unauthorized operations. IBM X-Force ID: 234762."

  • CVE-2021-40824MedSep 13, 2021
    risk 0.38cvss 5.9epss 0.01

    A logic error in the room key sharing functionality of Element Android before 1.2.2 and matrix-android-sdk2 (aka Matrix SDK for Android) before 1.2.2 allows a malicious Matrix homeserver present in an encrypted room to steal room encryption keys (via crafted Matrix protocol…

  • CVE-2026-22174MedMar 18, 2026
    risk 0.37cvss 6.8epss 0.00

    OpenClaw versions prior to 2026.2.22 inject the x-OpenClaw-relay-token header into Chrome CDP probe traffic on loopback interfaces, allowing local processes to capture the Gateway authentication token. An attacker controlling a loopback port can intercept CDP reachability probes…

  • CVE-2021-34466MedJul 16, 2021
    risk 0.37cvss 5.7epss 0.01

    Windows Hello Security Feature Bypass Vulnerability

  • CVE-2020-27276MedJan 19, 2021
    risk 0.37cvss 5.7epss 0.01

    SOOIL Developments Co Ltd DiabecareRS,AnyDana-i & AnyDana-A, the communication protocol of the insulin pump and its AnyDana-i & AnyDana-A mobile apps doesn't use adequate measures to authenticate the communicating entities before exchanging keys, which allows unauthenticated,…

  • CVE-2020-10136MedJun 2, 2020
    risk 0.37cvss 5.3epss 0.29

    IP-in-IP protocol specifies IP Encapsulation within IP standard (RFC 2003, STD 1) that decapsulate and route IP-in-IP traffic is vulnerable to spoofing, access-control bypass and other unexpected behavior due to the lack of validation to verify network packets before…

  • CVE-2026-66674MedSep 10, 2026
    risk 0.36cvss 5.6epss 0.00

    Unauthenticated Bypass Vulnerability in Simple Cloudflare Turnstile <= 1.42.1 versions.

  • CVE-2026-28900MedJul 27, 2026
    risk 0.36cvss 5.5epss 0.00

    A file quarantine bypass was addressed with additional checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.5. A maliciously crafted ZIP archive may bypass Gatekeeper checks.

  • CVE-2026-28849MedJul 27, 2026
    risk 0.36cvss 5.5epss 0.00

    The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.5. A maliciously crafted ZIP archive may bypass Gatekeeper checks.

  • CVE-2025-24091MedApr 30, 2025
    risk 0.36cvss 5.5epss 0.00

    An app could impersonate system notifications. Sensitive notifications now require restricted entitlements. This issue is fixed in iOS 18.3 and iPadOS 18.3, iPadOS 17.7.3. An app may be able to cause a denial-of-service.

  • CVE-2024-28224MedApr 8, 2024
    risk 0.36cvss 6.6epss 0.00

    Ollama before 0.1.29 has a DNS rebinding vulnerability that can inadvertently allow remote access to the full API, thereby letting an unauthorized user chat with a large language model, delete a model, or cause a denial of service (resource exhaustion).

  • CVE-2023-42889MedFeb 21, 2024
    risk 0.36cvss 5.5epss 0.00

    The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ventura 13.6.1. An app may be able to bypass certain Privacy preferences.

  • CVE-2023-41069MedJan 10, 2024
    risk 0.36cvss 5.5epss 0.00

    This issue was addressed by improving Face ID anti-spoofing models. This issue is fixed in iOS 17 and iPadOS 17. A 3D model constructed to look like the enrolled user may authenticate via Face ID.

  • CVE-2023-29147MedJun 30, 2023
    risk 0.36cvss 5.5epss 0.00

    In Malwarebytes EDR 1.0.11 for Linux, it is possible to bypass the detection layers that depend on inode identifiers, because an identifier may be reused when a file is replaced, and because two files on different filesystems can have the same identifier.

  • CVE-2023-27964MedJun 23, 2023
    risk 0.36cvss 5.4epss 0.08

    An authentication issue was addressed with improved state management. This issue is fixed in AirPods Firmware Update 5E133. When your headphones are seeking a connection request to one of your previously paired devices, an attacker in Bluetooth range might be able to spoof the…

  • CVE-2021-1677MedJan 12, 2021
    risk 0.36cvss 5.5epss 0.01

    Azure Active Directory Pod Identity Spoofing Vulnerability

  • CVE-2026-59157MedSep 15, 2026
    risk 0.35cvss 6.5epss 0.00

    webhookd is a minimalist webhook server that triggers shell scripts and external processes through HTTP requests. Prior to 1.22.0, webhookd deployments without htpasswd authentication forwarded all incoming HTTP headers through HTTPParamsToShellVars in pkg/api/index.go into the…

  • CVE-2026-75509MedAug 24, 2026
    risk 0.35cvss 6.5epss 0.00

    joserfc is a Python library that provides an implementation of several JSON Object Signing and Encryption (JOSE) standards. Prior to version 1.7.3, JWTClaimsRegistry applies membership matching to list-valued iss and sub claims, allowing an array-valued iss that contains the…

  • CVE-2026-73995MedAug 18, 2026
    risk 0.35cvss 5.4epss 0.00

    Subscriber Broken Authentication in User Registration <= 5.2.6 versions.