VYPR

CWE-290

Authentication Bypass by Spoofing

BaseIncomplete

Description

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-21 · CAPEC-22 · CAPEC-459 · CAPEC-461 · CAPEC-473 · CAPEC-476 · CAPEC-59 · CAPEC-60 · CAPEC-667 · CAPEC-94

CVEs mapped to this weakness (677)

page 6 of 34
  • CVE-2026-22797CriJan 19, 2026
    risk 0.57cvss 9.9epss 0.01

    An issue was discovered in OpenStack keystonemiddleware 10.5 through 10.7 before 10.7.2, 10.8 and 10.9 before 10.9.1, and 10.10 through 10.12 before 10.12.1. The external_oauth2_token middleware fails to sanitize incoming authentication headers before processing OAuth 2.0…

  • CVE-2024-8273HigDec 11, 2025
    risk 0.57cvss 8.8epss 0.00

    Authentication Bypass by Spoofing vulnerability in HYPR Server allows Identity Spoofing.This issue affects Server: before 10.1.

  • CVE-2025-11843HigOct 31, 2025
    risk 0.57cvss epss 0.00

    Therefore Corporation GmbH has recently become aware that Therefore™ Online and Therefore™ On-Premises contain an account impersonation vulnerability. A malicious user may potentially be able to impersonate the web service account or the account of a service using the API…

  • CVE-2025-48906HigJun 6, 2025
    risk 0.57cvss 8.8epss 0.00

    Authentication bypass vulnerability in the DSoftBus module Impact: Successful exploitation of this vulnerability may affect availability.

  • CVE-2024-50380HigDec 2, 2024
    risk 0.57cvss epss 0.00

    Snap One OVRC cloud uses the MAC address as an identifier to provide information when requested. An attacker can impersonate other devices by supplying enumerated MAC addresses and receive sensitive information about the device.

  • CVE-2024-36466HigNov 28, 2024
    risk 0.57cvss 8.8epss 0.01

    A bug in the code allows an attacker to sign a forged zbx_session cookie, which then allows them to sign in with admin permissions.

  • CVE-2024-44104HigSep 10, 2024
    risk 0.57cvss 8.8epss 0.00

    An incorrectly implemented authentication scheme that is subjected to a spoofing attack in the management console of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows a local authenticated attacker to escalate their privileges.

  • CVE-2023-40356HigJul 9, 2024
    risk 0.57cvss epss 0.00

    PingOne MFA Integration Kit contains a vulnerability related to the Prompt Users to Set Up MFA configuration. Under certain conditions, this configuration could allow for a new MFA device to be paired with a target user account without requiring second-factor authentication from…

  • CVE-2024-34145HigMay 2, 2024
    risk 0.57cvss 8.8epss 0.01

    A sandbox bypass vulnerability involving sandbox-defined classes that shadow specific non-sandbox-defined classes in Jenkins Script Security Plugin 1335.vf07d9ce377a_e and earlier allows attackers with permission to define and run sandboxed scripts, including Pipelines, to…

  • CVE-2023-32207HigJun 2, 2023
    risk 0.57cvss 8.8epss 0.01

    A missing delay in popup notifications could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird < 102.11.

  • CVE-2023-24892HigMar 14, 2023
    risk 0.57cvss 8.2epss 0.04

    Microsoft Edge (Chromium-based) Webview2 Spoofing Vulnerability

  • CVE-2021-45036HigNov 28, 2022
    risk 0.57cvss 8.7epss 0.01

    Velneo vClient on its 28.1.3 version, could allow an attacker with knowledge of the victims's username and hashed password to spoof the victim's id against the server.

  • CVE-2022-42983HigOct 17, 2022
    risk 0.57cvss 8.8epss 0.01

    anji-plus AJ-Report 0.9.8.6 allows remote attackers to bypass login authentication by spoofing JWT Tokens.

  • CVE-2022-31149HigSep 7, 2022
    risk 0.57cvss 8.8epss 0.01

    ActivityWatch open-source automated time tracker. Versions prior to 0.12.0b2 are vulnerable to DNS rebinding attacks. This vulnerability impacts everyone running ActivityWatch and gives the attacker full access to the ActivityWatch REST API. Users should upgrade to v0.12.0b2 or…

  • CVE-2022-32744HigAug 25, 2022
    risk 0.57cvss 8.8epss 0.01

    A flaw was found in Samba. The KDC accepts kpasswd requests encrypted with any key known to it. By encrypting forged kpasswd requests with its own key, a user can change other users' passwords, enabling full domain takeover.

  • CVE-2022-22476HigJul 8, 2022
    risk 0.57cvss 8.8epss 0.01

    IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.7 and Open Liberty are vulnerable to identity spoofing by an authenticated user using a specially crafted request. IBM X-Force ID: 225604.

  • CVE-2022-25989HigMay 5, 2022
    risk 0.57cvss 8.8epss 0.01

    An authentication bypass vulnerability exists in the libxm_av.so getpeermac() functionality of Anker Eufy Homebase 2 2.1.8.5h. A specially-crafted DHCP packet can lead to authentication bypass. An attacker can DHCP poison to trigger this vulnerability.

  • CVE-2018-5354HigSep 30, 2020
    risk 0.57cvss 8.8epss 0.02

    The custom GINA/CP module in ANIXIS Password Reset Client before version 3.22 allows remote attackers to execute code and escalate privileges via spoofing. When the client is configured to use HTTP, it does not authenticate the intended server before opening a browser window. An…

  • CVE-2018-16483HigFeb 1, 2019
    risk 0.57cvss 8.8epss 0.01

    A deficiency in the access control in module express-cart <=1.1.5 allows unprivileged users to add new users to the application as administrators.

  • CVE-2026-22734HigApr 17, 2026
    risk 0.56cvss 8.6epss 0.00

    Cloud Foundry UUA is vulnerable to a bypass that allows an attacker to obtain a token for any user and gain access to UAA-protected systems. This vulnerability exists when SAML 2.0 bearer assertions are enabled for a client, as the UAA accepts SAML 2.0 bearer assertions that…