Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18872

18872 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2020-3532 Cisco Unified Communications Products Cross-Site Scripting Vulnerability — Cisco Unity ConnectionCWE-79 6.1 -2024-11-18
CVE-2020-3548 Cisco Email Security Appliance Denial Of Service Vulnerability — Cisco Secure EmailCWE-407 5.3 Medium2024-11-18
CVE-2024-0012 PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015) — Cloud NGFWCWE-306 9.8AICriticalAI2024-11-18
CVE-2021-1234 Cisco SD-WAN vManage Information Disclosure Vulnerabilities — Cisco Catalyst SD-WAN ManagerCWE-497 5.3 Medium2024-11-18
CVE-2021-1132 Cisco Network Services Orchestrator Path Traversal Vulnerability — Cisco Network Services OrchestratorCWE-35 5.3 Medium2024-11-18
CVE-2021-1379 Cisco IP Phones Cisco Discovery Protocol and Link Layer Discovery Protocol Remote Code Execution and Denial of Service Vulnerabilities — Cisco IP Phones with Multiplatform FirmwareCWE-120 6.5 Medium2024-11-18
CVE-2021-1285 Multiple Cisco Products SNORT Ethernet Frame Decoder Denial of Service Vulnerability — Cisco UTD SNORT IPS Engine SoftwareCWE-770 7.4 -2024-11-18
CVE-2021-1424 Cisco ASR 5000 Series Software (StarOS) ipsecmgr Process Denial of Service Vulnerability — Cisco ASR 5000 Series SoftwareCWE-119 5.3 Medium2024-11-18
CVE-2021-1440 Cisco IOS XR Software BGP Resource Public Key Infrastructure Denial of Service Vulnerability — Cisco IOS XR SoftwareCWE-617 6.8 Medium2024-11-18
CVE-2021-1444 Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software Web Services Interface Cross-Site Scripting Vulnerability — Cisco Adaptive Security Appliance (ASA) SoftwareCWE-79 6.1 Medium2024-11-18
CVE-2024-37155 OpenCTI May Bypass Introspection Restriction — openctiCWE-284 6.5 Medium2024-11-18
CVE-2024-11318 IDOR vulnerability in AbsysNet — AbsysNetCWE-639 7.5 High2024-11-18
CVE-2024-11315 TRCore DVC - Arbitrary File Upload through Path Traversal — DVCCWE-23 9.8 Critical2024-11-18
CVE-2024-11314 TRCore DVC - Arbitrary File Upload through Path Traversal — DVCCWE-23 9.8 Critical2024-11-18
CVE-2024-11313 TRCore DVC - Arbitrary File Upload through Path Traversal — DVCCWE-23 9.8 Critical2024-11-18
CVE-2024-11312 TRCore DVC - Arbitrary File Upload through Path Traversal — DVCCWE-23 9.8 Critical2024-11-18
CVE-2024-11311 TRCore DVC - Arbitrary File Upload through Path Traversal — DVCCWE-23 9.8 Critical2024-11-18
CVE-2024-11310 TRCore DVC - Arbitrary File Read through Path Traversal — DVCCWE-23 7.5 High2024-11-18
CVE-2024-11309 TRCore DVC - Arbitrary File Read through Path Traversal — DVCCWE-23 7.5 High2024-11-18
CVE-2024-52876 Holy Stone Remote ID Module HSRID01 安全漏洞 — n/a 8.1AIHighAI2024-11-17
CVE-2024-11094 404 Solution <= 2.35.17 - Missing Authentication to Sensitive Information Exposure — 404 SolutionCWE-488 5.3 Medium2024-11-16
CVE-2024-10645 Blogger 301 Redirect <= 2.5.3 - Unauthenticated SQL Injection via br — Blogger 301 RedirectCWE-89 7.5 High2024-11-16
CVE-2024-8856 Backup and Staging by WP Time Capsule <= 1.22.21 - Unauthenticated Arbitrary File Upload — Backup and Staging by WP Time CapsuleCWE-434 9.8 Critical2024-11-16
CVE-2024-9839 Uix Slideshow <= 1.6.5 - Unauthenticated Arbitrary Shortcode Execution — Uix SlideshowCWE-94 7.3 High2024-11-16
CVE-2024-8873 PeproDev WooCommerce Receipt Uploader <= 2.6.9 - Reflected Cross-Site Scripting — PeproDev WooCommerce Receipt UploaderCWE-79 6.1 Medium2024-11-16
CVE-2024-6628 EleForms – All In One Form Integration including DB for Elementor <= 2.9.9.9 - Cross-Site Request Forgery — EleForms – All In One Form Integration including DB for ElementorCWE-352 4.3 Medium2024-11-16
CVE-2024-9938 Bounce Handler MailPoet 3 <= 1.3.21 - Reflected Cross-Site Scripting — Bounce Handler MailPoet 3CWE-79 6.1 Medium2024-11-16
CVE-2024-9615 BulkPress <= 0.3.5 - Reflected Cross-Site Scripting — BulkPressCWE-79 6.1 Medium2024-11-16
CVE-2024-10875 Gallery Manager <= 1.6.58 - Reflected Cross-Site Scripting — Gallery ManagerCWE-79 6.1 Medium2024-11-16
CVE-2024-11118 404 Error Monitor <= 1.1 - Cross-Site Request Forgery to Plugin Settings Update via updatePluginSettings Function — 404 Error MonitorCWE-352 5.3 Medium2024-11-16

Vulnerabilities classified as access:pre-auth represent 18872 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.