Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18853

18853 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2025-39201 Hitachi MicroSCADA X SYS600 安全漏洞 — MicroSCADA X SYS600CWE-276 6.1 Medium2025-06-24
CVE-2025-3092 MB connect line: Observable response discrepancy in mbCONNECT24/mymbCONNECT24 — myREX24CWE-204 7.5 High2025-06-24
CVE-2025-3090 MB connect line: Missing Authentication in mbCONNECT24/mymbCONNECT24 — mbCONNECT24CWE-306 8.2 High2025-06-24
CVE-2025-48890 Elecom WRH-733GBK和Elecom WRH-733GWH 操作系统命令注入漏洞 — WRH-733GBKCWE-78 9.8AICriticalAI2025-06-24
CVE-2025-43879 Elecom WRH-733GBK和Elecom WRH-733GWH 操作系统命令注入漏洞 — WRH-733GBKCWE-78 9.8AICriticalAI2025-06-24
CVE-2025-48469 Unauthenticated Firmware Upload — Advantech Wireless Sensing and Equipment (WISE) 9.6 Critical2025-06-24
CVE-2025-48466 Modbus Command Injection without Authentication — Advantech Wireless Sensing and Equipment (WISE) 8.1 High2025-06-24
CVE-2025-48461 Weak Session Cookie Entropy — Advantech Wireless Sensing and Equipment (WISE) 5.0 Medium2025-06-24
CVE-2025-6560 Sapido Wireless Router - Exposure of Sensitive Information — BR071nCWE-256 9.8 Critical2025-06-24
CVE-2025-6559 Sapido Wireless Router - OS Command Injection — BR071nCWE-78 9.8 Critical2025-06-24
CVE-2025-34041 Sangfor Endpoint Detection and Response OS Command Injection — Endpoint Detection and Response PlatformCWE-78 9.8AICriticalAI2025-06-24
CVE-2025-34040 Seeyon Zhiyuan OA System Path Traversal File Upload — Zhiyuan OA Web Application SystemCWE-434 9.8AICriticalAI2025-06-24
CVE-2025-34039 Yonyou NC BeanShell Command Injection — UFIDA NCCWE-306 9.8AICriticalAI2025-06-24
CVE-2025-34038 Weaver E-cology SQL Injection — E-cologyCWE-89 9.1AICriticalAI2025-06-24
CVE-2025-34037 Linksys Routers E/WAG/WAP/WES/WET/WRT-Series — E4200CWE-78 9.8AICriticalAI2025-06-24
CVE-2025-34036 Shenzhen TVT CCTV-DVR Command Injection — CCTV-DVRCWE-78 9.8AICriticalAI2025-06-24
CVE-2025-34035 EnGenius EnShare IoT Gigabit Cloud Service Command Injection — EnShare IoT Gigabit Cloud ServiceCWE-78 9.8AICriticalAI2025-06-24
CVE-2025-34034 5VTechnologies Blue Angel Software Suite Hardcoded Credentials — Blue Angel Software SuiteCWE-798 9.8AICriticalAI2025-06-24
CVE-2025-34031 Moodle LMS Jmol Plugin Path Traversal — Jmol PluginCWE-22 7.5AIHighAI2025-06-24
CVE-2025-27827 Mitel MiContact Center Business 安全漏洞 — n/a 7.1AIHighAI2025-06-24
CVE-2025-27828 Mitel MiContact Center Business 安全漏洞 — n/a 6.1AIMediumAI2025-06-24
CVE-2025-32977 Quest KACE Systems Management Appliance 安全漏洞 — n/a 7.5AIHighAI2025-06-24
CVE-2025-32978 Quest KACE Systems Management Appliance 访问控制错误漏洞 — n/a 9.1 -2025-06-24
CVE-2025-53021 Moodle 授权问题漏洞 — MoodleCWE-384 4.2 Medium2025-06-24
CVE-2025-52562 Convey Panel Directory Traversal in LocaleController leading to Remote Code Execution — panelCWE-22 10.0 Critical2025-06-23
CVE-2025-48026 Mitel OpenScape Xpressions 安全漏洞 — n/a 7.5AIHighAI2025-06-23
CVE-2025-34030 sar2html OS Command Injection — sar2htmlCWE-78 9.8AICriticalAI2025-06-20
CVE-2025-34022 Selea Targa IP OCR-ANPR Camera Path Traversal — Targa IP OCR-ANPR CameraCWE-22 7.5AIHighAI2025-06-20
CVE-2025-34021 Selea Targa IP OCR-ANPR Camera Server-Side Request Forgery — Targa IP OCR-ANPR CameraCWE-918 9.1AICriticalAI2025-06-20
CVE-2025-25038 MiniDVBLinux Root Command Injection — MiniDVBLinuxCWE-78 9.8AICriticalAI2025-06-20

Vulnerabilities classified as access:pre-auth represent 18853 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.