Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18844

18844 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2025-8415 Cryostat: authentication bypass if network policies are disabled — CryostatCWE-289 5.9 Medium2025-08-20
CVE-2011-10026 Spreecommerce < 0.50.x API RCE — SpreecommerceCWE-78 9.8AICriticalAI2025-08-20
CVE-2012-10061 Sockso Music Host Server <= 1.5 Path Traversal — Music Host ServerCWE-22 7.5AIHighAI2025-08-20
CVE-2010-20103 ProFTPD 1.3.3c Backdoor Command Execution — ProFTPD (Professional FTP Daemon)CWE-912 9.8AICriticalAI2025-08-20
CVE-2011-10020 Kaillera 0.86 Server DoS via Malformed UDP Packet — ServerCWE-20 7.5AIHighAI2025-08-20
CVE-2010-20059 FreeNAS < 0.7.2 rev 5543 exec_raw.php Arbitrary Command Execution — FreeNASCWE-78 9.8AICriticalAI2025-08-20
CVE-2009-10005 ContentKeeper Web Appliance < 125.10 Arbitrary File Access via mimencode — Web ApplianceCWE-552 7.5AIHighAI2025-08-20
CVE-2025-43749 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-552 7.5AIHighAI2025-08-20
CVE-2025-43750 Liferay Portal和Liferay DXP 代码问题漏洞 — PortalCWE-434 7.5AIHighAI2025-08-20
CVE-2025-8102 Easy Digital Downloads <= 3.5.0 - Cross-Site Request Forgery to Plugin Deactivation via edd_sendwp_disconnect and edd_sendwp_remote_install Functions — Easy Digital Downloads – eCommerce Payments and Subscriptions made easyCWE-352 5.4 Medium2025-08-20
CVE-2025-9229 Information Disclosure in MiR robots and MiR fleet through verbose error pages — MiR RobotsCWE-209 5.3 Medium2025-08-20
CVE-2025-53522 Movable Type 安全漏洞 — Movable Type (Software Edition)CWE-348 7.5 -2025-08-20
CVE-2025-8141 Redirection for Contact Form 7 <= 3.2.4 - Unauthenticated Arbitrary File Deletion — Redirection for Contact Form 7CWE-22 8.8 High2025-08-20
CVE-2025-8145 Redirection for Contact Form 7 <= 3.2.4 - Unauthenticated PHP Object Injection — Redirection for Contact Form 7CWE-502 8.8 High2025-08-20
CVE-2025-8289 Redirection for Contact Form 7 <= 3.2.4 - Unauthenticated PHP Object Injection via PHAR Deserialization — Redirection for Contact Form 7CWE-502 7.5 High2025-08-20
CVE-2025-51990 XWiki Platform 安全漏洞 — n/a 4.8 -2025-08-20
CVE-2025-57788 Unauthorized API Access Risk — CommCellCWE-259 9.4 -2025-08-20
CVE-2024-53495 my-site 安全漏洞 — n/a 7.5 -2025-08-20
CVE-2024-57152 my-site 安全漏洞 — n/a 7.5 -2025-08-20
CVE-2025-28041 iTranswarp 安全漏洞 — n/a 7.5 -2025-08-20
CVE-2025-8450 Unrestricted File Upload in FileCatalyst — FileCatalystCWE-434 8.2 High2025-08-19
CVE-2025-41689 Wiesemann & Theis: Motherbox 3 allows unauthenticated read-only DB access — Motherbox 3CWE-306 7.5 High2025-08-19
CVE-2025-7670 JS Archive List <= 6.1.5 - Unauthenticated SQL Injection via build_sql_where Function — JS Archive ListCWE-89 7.5 High2025-08-19
CVE-2025-8723 Cloudflare Image Resizing <= 1.5.6 - Missing Authentication to Unauthenticated Remote Code Execution via rest_pre_dispatch Hook — Cloudflare Image Resizing – Optimize & Accelerate Your ImagesCWE-94 9.8 Critical2025-08-19
CVE-2025-6758 Real Spaces - WordPress Properties Directory Theme <= 3.6 - Unauthenticated Privilege Escalation to Administrator via 'imic_agent_register' — Real Spaces - WordPress Properties Directory ThemeCWE-269 9.8 Critical2025-08-19
CVE-2025-8218 Real Spaces - WordPress Properties Directory Theme <= 3.5 - Authenticated (Subscriber+) Privilege Escalation to Administrator via 'change_role_member' — Real Spaces - WordPress Properties Directory ThemeCWE-269 8.8 High2025-08-19
CVE-2025-51539 EzGED 安全漏洞 — n/a 9.1 -2025-08-19
CVE-2024-44373 Allsky Camera 安全漏洞 — n/a 9.8 -2025-08-19
CVE-2025-3639 Liferay Portal和Liferay DXP 安全漏洞 — PortalCWE-288 9.8AICriticalAI2025-08-18
CVE-2025-54118 NamelessMC allows sensitive information disclosure in member list component — NamelessCWE-200 5.3 Medium2025-08-18

Vulnerabilities classified as access:pre-auth represent 18844 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.