Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18887

18887 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2024-47176 cups-browsed binds to `INADDR_ANY:631`, trusting any packet from any source — cups-browsedCWE-1327 5.3 Medium2024-09-26
CVE-2024-47130 Missing Authentication for Critical Function in goTenna Pro — ProCWE-306 8.8 High2024-09-26
CVE-2024-47125 Improper Restriction of Communication Channel to Intended Endpoints in goTenna Pro — ProCWE-923 8.1 High2024-09-26
CVE-2024-37125 Dell SmartFabric OS10 资源管理错误漏洞 — SmartFabric OS10 SoftwareCWE-400 7.5 High2024-09-26
CVE-2022-4541 WordPress Visitors <= 1.0 - Unauthenticated Stored Cross-Site Scripting via HTTP Header — WordPress VisitorsCWE-79 7.2 High2024-09-26
CVE-2024-8872 Store Hours for WooCommerce <= 4.3.20 - Reflected Cross-Site Scripting — Store Hours for WooCommerceCWE-80 6.1 Medium2024-09-26
CVE-2024-9025 Sight – Professional Image Gallery and Portfolio <= 1.1.2 - Missing Authorization to Sensitive Information Exposure in handler_post_title — Sight – Professional Image Gallery and PortfolioCWE-862 5.3 Medium2024-09-26
CVE-2024-7781 Jupiter X Core <= 4.7.5 - Limited Unauthenticated Authentication Bypass to Account Takeover — Jupiter X CoreCWE-288 8.1 High2024-09-26
CVE-2024-7772 Jupiter X Core <= 4.6.5 - Unauthenticated Arbitrary File Upload — Jupiter X CoreCWE-434 9.8 Critical2024-09-26
CVE-2024-8803 Bulk NoIndex & NoFollow Toolkit <= 2.15 - Reflected Cross-Site Scripting — Bulk NoIndex & NoFollow ToolkitCWE-79 6.1 Medium2024-09-26
CVE-2024-20434 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE SoftwareCWE-190 4.3 Medium2024-09-25
CVE-2024-20414 Cisco IOS XE Software 安全漏洞 — IOSCWE-285 6.5 Medium2024-09-25
CVE-2024-20465 Cisco IOS 安全漏洞 — IOSCWE-284 5.8 Medium2024-09-25
CVE-2024-20510 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE SoftwareCWE-863 4.7 Medium2024-09-25
CVE-2024-20467 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE SoftwareCWE-399 8.6 High2024-09-25
CVE-2024-20464 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE SoftwareCWE-20 8.6 High2024-09-25
CVE-2024-20480 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE SoftwareCWE-783 8.6 High2024-09-25
CVE-2024-20437 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE SoftwareCWE-352 8.1 High2024-09-25
CVE-2024-20436 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE SoftwareCWE-476 8.6 High2024-09-25
CVE-2024-20433 Cisco IOS XE Software 安全漏洞 — IOSCWE-121 8.6 High2024-09-25
CVE-2024-20496 Cisco SD-WAN vEdge Routers Denial of Service Vulnerability — Cisco SD-WAN vEdge CloudCWE-787 6.1 Medium2024-09-25
CVE-2024-20508 Cisco UTD Snort IPS Engine Software for Cisco IOS XE Software Security Policy Bypass and Denial of Service Vulnerability — Cisco UTD SNORT IPS Engine SoftwareCWE-122 5.8 Medium2024-09-25
CVE-2024-20350 Cisco Catalyst Center Static SSH Host Key Vulnerability — Cisco Digital Network Architecture Center (DNA Center)CWE-321 7.5 High2024-09-25
CVE-2024-20455 Cisco IOS XE Software 安全漏洞 — Cisco IOS XE SoftwareCWE-371 8.6 High2024-09-25
CVE-2024-30128 An open proxy vulnerability affects HCL Nomad server on Domino — Nomad server on Domino 8.6 High2024-09-25
CVE-2024-8175 CODESYS: web server vulnerable to DoS — CODESYS Control for BeagleBone SLCWE-754 7.5 High2024-09-25
CVE-2024-3866 Ninja Forms Contact Form <= 3.8.15 - Reflected Self-Based Cross-Site Scripting via Referer — Ninja Forms – The Contact Form Builder That Grows With YouCWE-79 4.7 Medium2024-09-25
CVE-2024-8678 Revolut Gateway for WooCommerce <= 4.17.3 - Missing Authorization to Unauthenticated Order Status Update — Revolut Gateway for WooCommerceCWE-862 5.3 Medium2024-09-25
CVE-2024-6845 SmartSearchWP < 2.4.6 - Unauthenticated OpenAI Key Disclosure — Chatbot with ChatGPT WordPress 7.5AIHighAI2024-09-25
CVE-2024-8658 myCred – Loyalty Points and Rewards plugin for WordPress and WooCommerce – Give Points, Ranks, Badges, Cashback, WooCommerce rewards, and WooCommerce credits for Gamification <= 2.7.3 - Missing Authorization to Unauthenticated Database Upgrade — Points Management System For Gamification, Ranks, Badges, and Loyalty Rewards Program – myCredCWE-862 5.3 Medium2024-09-25

Vulnerabilities classified as access:pre-auth represent 18887 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.