Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-287 (认证机制不恰当) — Vulnerability Class 1187

1187 vulnerabilities classified as CWE-287 (认证机制不恰当). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-21538 DELL Dell EMC iDRAC9 授权问题漏洞 — Integrated Dell Remote Access Controller (iDRAC) 9.6 Critical2021-07-29
CVE-2021-32794 Accidental removal of IPCPassword (< 5.1.2.4) — ArchiSteamFarm 6.8 Medium2021-07-26
CVE-2021-25430 Bluetooth 授权问题漏洞 — Samsung Mobile Devices 3.5 -2021-07-08
CVE-2021-32738 Utils.readChallengeTx does not verify the server account signature — js-stellar-sdk 6.5 Medium2021-07-02
CVE-2021-35029 ZyXEL ZyWALL USG 授权问题漏洞 — USG/Zywall series Firmware 9.8 Critical2021-07-02
CVE-2019-18906 cryptctl: client side password hashing is equivalent to clear text password storage — SUSE Linux Enterprise Server for SAP 12-SP5 9.8 Critical2021-06-30
CVE-2021-33539 WEIDMUELLER: WLAN devices affected by authentication bypass vulnerability — IE-WL(T)-BL-AP-CL-XX 7.2 High2021-06-25
CVE-2021-32693 Authentication granted with multiple firewalls — symfony 6.8 Medium2021-06-17
CVE-2021-1542 Cisco Small Business 220 Series Smart Switches Vulnerabilities — Cisco Small Business 220 Series Smart Plus Switches 7.2 High2021-06-16
CVE-2021-1543 Cisco Small Business 220 Series Smart Switches Vulnerabilities — Cisco Small Business 220 Series Smart Plus Switches 7.2 High2021-06-16
CVE-2021-1571 Cisco Small Business 220 Series Smart Switches Vulnerabilities — Cisco Small Business 220 Series Smart Plus Switches 7.2 High2021-06-16
CVE-2021-1541 Cisco Small Business 220 Series Smart Switches Vulnerabilities — Cisco Small Business 220 Series Smart Plus Switches 7.2 High2021-06-16
CVE-2021-22764 Schneider Electric PowerLogic 授权问题漏洞 — PowerLogic PM55xx, PowerLogic EGX100, and PowerLogic EGX300 (see security notification for version infromation) 5.3 -2021-06-11
CVE-2021-25389 Samsung SMR 授权问题漏洞 — Samsung Mobile Devices 2.3 Low2021-06-11
CVE-2021-25424 Tizen bluetooth-frwk 授权问题漏洞 — Tizen wearable devices 8.3 -2021-06-11
CVE-2021-23847 Unauthenticated Information Extraction Vulnerability — CPP Firmware 9.8 Critical2021-06-09
CVE-2020-14380 Red Hat Satellite 授权问题漏洞 — Red Hat Satellite 7.5 -2021-06-02
CVE-2021-3424 Red Hat Single Sign-On 7安全漏洞 — keycloak 4.3 -2021-06-01
CVE-2021-32646 Escalation of permissions in roomer — Dav-Cogs 5.3 Medium2021-05-28
CVE-2021-32637 Authentication bypassed with malformed request URI — authelia 10.0 Critical2021-05-28
CVE-2021-32543 SysJust CTS Web - Broken Authentication — CTS Web 6.5 Medium2021-05-28
CVE-2020-10709 Red Hat Ansible 代码问题漏洞 — Tower 7.1 -2021-05-27
CVE-2018-16496 Versa Networks Versa Director 授权问题漏洞 — Versa Director 5.3 -2021-05-26
CVE-2002-2438 TCP 授权问题漏洞 — kernel 7.5 -2021-05-18
CVE-2021-27651 PEGA pega infinity 授权问题漏洞 — Pega Infinity 7.8 -2021-04-29
CVE-2021-22893 Pulse Secure Pulse Connect Secure 资源管理错误漏洞 — Pulse Connect Secure 10.0 -2021-04-23
CVE-2020-7856 Helpcom 授权问题漏洞 — Helpcom 7.5 High2021-04-20
CVE-2021-20288 红帽 Red Hat Ceph 授权问题漏洞 — ceph 9.8 -2021-04-15
CVE-2021-20020 SonicWall Global Management System 授权问题漏洞 — Global Management System (GMS) 9.8 -2021-04-10
CVE-2021-25377 Samsung Experience Service 授权问题漏洞 — Samsung Experience Service 3.3 Low2021-04-09

Vulnerabilities classified as CWE-287 (认证机制不恰当) represent 1187 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.