Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18867

18867 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2024-36403 Denial of service/high operating costs through unauthenticated downloads in Matrix Media Repo — matrix-media-repoCWE-770 5.3 Medium2025-01-16
CVE-2018-25108 WAGO: Denial of service in 750-8xx controller due to uncontrolled resource consumption — 750-8100 (Controller PFC100)CWE-770 7.5 High2025-01-16
CVE-2024-12427 Multi Step Form <= 1.7.23 - Missing Authorization to Unauthenticated Limited File Upload — Multi Step FormCWE-862 5.3 Medium2025-01-16
CVE-2024-12613 Passwords Manager <= 1.4.8 - Unauthenticated SQL Injection — Passwords ManagerCWE-89 7.5 High2025-01-16
CVE-2024-10789 WP User Profile Avatar <= 1.0.5 - Cross-Site Request Forgery to Settings Update — WP User Profile AvatarCWE-352 4.3 Medium2025-01-16
CVE-2025-0170 DWT - Directory & Listing WordPress Theme <= 3.3.3 - Reflected Cross-Site Scripting — DWT - Directory & Listing WordPress ThemeCWE-79 6.1 Medium2025-01-16
CVE-2025-0456 NetVision Information airPASS - Missing Authentication — airPASSCWE-306 9.8 Critical2025-01-16
CVE-2025-0455 NetVision Information airPASS - SQL injection — airPASSCWE-89 9.8 Critical2025-01-16
CVE-2024-57676 D-Link DIR-816 安全漏洞 — n/a 7.5 -2025-01-16
CVE-2024-57677 D-Link DIR-816 安全漏洞 — n/a 8.2 -2025-01-16
CVE-2024-57678 D-Link DIR-816A2 安全漏洞 — n/a 5.3 -2025-01-16
CVE-2024-57679 D-Link DIR-816A2 安全漏洞 — n/a--2025-01-16
CVE-2024-57680 D-Link DIR-816 安全漏洞 — n/a 7.5 -2025-01-16
CVE-2024-57681 D-Link DIR-816 安全漏洞 — n/a 5.3 -2025-01-16
CVE-2024-57682 D-Link DIR-816 安全漏洞 — n/a 7.5 -2025-01-16
CVE-2024-57683 D-Link DIR-816 安全漏洞 — n/a 5.3 -2025-01-16
CVE-2024-57684 D-Link DIR-816 安全漏洞 — n/a 5.3 -2025-01-16
CVE-2025-0215 UpdraftPlus - Backup/Restore <= 1.24.12 - Reflected Cross-Site Scripting — UpdraftPlus: WP Backup & Migration PluginCWE-79 6.1 Medium2025-01-15
CVE-2024-8603 B&R Automation Runtime 加密问题漏洞 — Automation RuntimeCWE-327 7.5 High2025-01-15
CVE-2024-11322 CyberPower PowerPanel Business Unauthenticated Restart DoS — PowerPanel BusinessCWE-287 7.5 High2025-01-15
CVE-2024-12403 Image Gallery – Responsive Photo Gallery <= 1.0.5 - Reflected Cross-Site Scripting — Awesome Responsive Photo Gallery – Image & Video Lightbox GalleryCWE-79 6.1 Medium2025-01-15
CVE-2024-12423 Contact Form 7 Redirect & Thank You Page <= 1.0.7 - Reflected Cross-Site Scripting — Business Essentials for Contact Form 7CWE-79 6.1 Medium2025-01-15
CVE-2024-9636 Post Grid and Gutenberg Blocks 2.2.85 - 2.3.3 - Unauthenticated Privilege Escalation — Post Grid and Gutenberg Blocks – ComboBlocksCWE-269 9.8 Critical2025-01-15
CVE-2024-4227 gSOAP: Vulnerable to specially crafted unencrypted SDC messages — gSOAPCWE-834 7.5 High2025-01-15
CVE-2024-13334 Car Demon <= 1.8.1 - Reflected Cross-Site Scripting — Car DemonCWE-79 6.1 Medium2025-01-15
CVE-2024-57727 SimpleHelp 安全漏洞 — n/a 7.5 -2025-01-15
CVE-2025-22964 DDSN Interactive cm3 Acora CMS 安全漏洞 — n/a 9.1 -2025-01-15
CVE-2024-48858 Vulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development Platform — QNX Software Development Platform (SDP)CWE-1287 7.5 High2025-01-14
CVE-2024-48857 Vulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development Platform — QNX Software Development Platform (SDP)CWE-476 7.5 High2025-01-14
CVE-2024-48856 Vulnerabilities in TIFF and PCX Image Codecs Impact QNX Software Development Platform — QNX Software Development Platform (SDP)CWE-787 9.8 Critical2025-01-14

Vulnerabilities classified as access:pre-auth represent 18867 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.