Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18851

18851 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2025-54786 SuiteCRM: Legacy iCal service allows unauthenticated access to meeting data — SuiteCRM-CoreCWE-200 5.3 Medium2025-08-06
CVE-2025-38746 Dell SupportAssist OS Recovery 信息泄露漏洞 — SupportAssist OS RecoveryCWE-200 3.5 Low2025-08-06
CVE-2025-20215 Cisco Webex Meeting Client Join Certificate Validation Vulnerability — Cisco Webex MeetingsCWE-295 5.4 Medium2025-08-06
CVE-2025-8620 GiveWP – Donation Plugin and Fundraising Platform <= 4.6.0 - Unauthenticated Donor Data Exposure — GiveWP – Donation Plugin and Fundraising PlatformCWE-200 5.3 Medium2025-08-06
CVE-2025-6994 Reveal Listing <= 3.3 - Unauthenticated Privilege Escalation — Reveal ListingCWE-269 9.8 Critical2025-08-06
CVE-2025-8420 Multiple Plugins by emarket-design <= Multiple Versions - Unauthenticated Limited Remote Code Execution — Campus Directory – Faculty, Staff & Student Directory Plugin for WordPressCWE-95 8.1 High2025-08-06
CVE-2025-7036 CleverReach WP <= 1.5.20 - Unauthenticated SQL Injection via title Parameter — CleverReach® WPCWE-89 7.5 High2025-08-06
CVE-2025-8649 Kenwood DMX958XR JKWifiService Command Injection Remote Code Execution Vulnerability — DMX958XRCWE-78 6.8AIMediumAI2025-08-06
CVE-2025-8628 Kenwood DMX958XR Firmware Update Command Injection Vulnerability — DMX958XRCWE-78 6.8AIMediumAI2025-08-06
CVE-2012-10027 WordPress Plugin WP-Property <= 1.35.0 PHP File Upload — WordPress PluginCWE-434 9.8AICriticalAI2025-08-05
CVE-2012-10026 WordPress Plugin Asset-Manager <= 2.0 PHP File Upload — Wordpress PluginCWE-434 9.8AICriticalAI2025-08-05
CVE-2012-10025 WordPress Plugin Advanced Custom Fields <= 3.5.1 Remote File Inclusion — WordPress PluginCWE-98 9.8AICriticalAI2025-08-05
CVE-2012-10035 Turbo FTP Server 1.30.823/826 PORT Command Buffer Overflow — TurboFTP ServerCWE-120 9.8AICriticalAI2025-08-05
CVE-2013-10070 PHP-Charts v1.0 PHP Code Execution — PHP-ChartsCWE-95 9.8AICriticalAI2025-08-05
CVE-2013-10066 Kordil EDMS v2.2.60rc3 Unauthenticated Arbitrary File Upload — EDMSCWE-434 9.8AICriticalAI2025-08-05
CVE-2012-10030 FreeFloat FTP Server Arbitrary File Upload — FTP ServerCWE-434 9.8AICriticalAI2025-08-05
CVE-2013-10069 D-Link Devices Unauthenticated RCE — DIR-600 rev BCWE-78 9.8AICriticalAI2025-08-05
CVE-2025-2611 ICTBroadcast <= 7.4 Unauthenticated Session Cookie RCE — ICTBroadcastCWE-78 9.8AICriticalAI2025-08-05
CVE-2025-7050 Use-your-Drive | Google Drive plugin for WordPress <= 3.3.1- Unauthenticated Stored Cross-Site Scripting via File Metadata — Use-your-Drive | Google Drive plugin for WordPressCWE-79 7.2 High2025-08-05
CVE-2025-53544 Trilium Notes is Vulnerable to Brute-force Protection Bypass via Initial Sync Seed Retrieval — TriliumCWE-307 7.5 High2025-08-05
CVE-2025-54802 pyLoad CNL Blueprint is vulnerable to Path Traversal through `dlc_path` leading to Remote Code Execution (RCE) — pyloadCWE-22 9.8 Critical2025-08-05
CVE-2025-51541 Shopware 安全漏洞 — n/a 6.1AIMediumAI2025-08-05
CVE-2025-51628 Agenzia Impresa EccoBook 安全漏洞 — n/a 7.5AIHighAI2025-08-05
CVE-2025-26476 Dell ECS 安全漏洞 — ECSCWE-321 8.4 High2025-08-04
CVE-2025-38741 Dell Enterprise SONiC OS 安全漏洞 — Enterprise SONiC OSCWE-321 7.5 High2025-08-04
CVE-2013-10054 LibrettoCMS File Manager Arbitrary File Upload — LibrettoCMSCWE-434 9.8AICriticalAI2025-08-04
CVE-2025-34147 Shenzhen Aitemi M300 Wi-Fi Repeater OS Command Injection via SSID — M300 Wi-Fi RepeaterCWE-78 8.8AIHighAI2025-08-04
CVE-2025-38739 Dell Digital Delivery 安全漏洞 — Dell Digital DeliveryCWE-522 7.2 High2025-08-04
CVE-2025-36594 Dell PowerProtect Data Domain 安全漏洞 — PowerProtect Data Domain Feature ReleaseCWE-290 9.8 Critical2025-08-04
CVE-2025-36605 Dell Unity 跨站脚本漏洞 — UnityCWE-79 6.1 Medium2025-08-04

Vulnerabilities classified as access:pre-auth represent 18851 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.