Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18893

18893 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2024-27120 Local File Inclusion in ComfortKey before version 24.1.2 — ComfortKeyCWE-200 7.5AIHighAI2024-08-14
CVE-2024-5914 Cortex XSOAR: Command Injection in CommonScripts Pack — Cortex XSOAR CommonScriptsCWE-77 9.8AICriticalAI2024-08-14
CVE-2024-23499 Intel Ethernet Adapters和Intel Ethernet Controllers 安全漏洞 — Intel(R) Ethernet Network Controllers and Adapters E810 Series 6.5 Medium2024-08-14
CVE-2024-24983 Intel Ethernet Adapters和Intel Ethernet Controllers 安全漏洞 — Intel(R) Ethernet Network Controllers and Adapters E810 Series 6.5 Medium2024-08-14
CVE-2024-21844 Intel CSME 安全漏洞 — Intel(R) CSME 4.3 Medium2024-08-14
CVE-2023-40067 Intel CSME 安全漏洞 — Intel(R) CSME 5.7 Medium2024-08-14
CVE-2024-7732 SECOM Dr.ID Attendance system - Unrestricted File Upload — Dr.ID Attendance systemCWE-89 9.8 Critical2024-08-14
CVE-2024-7731 SECOM Dr.ID Access control system - SQL injection — Dr.ID Access control systemCWE-89 9.8 Critical2024-08-14
CVE-2024-7729 CAYIN Technology CMS - Sensitive File Download — SMP-2100CWE-552 7.5 High2024-08-14
CVE-2024-38652 Ivanti Avalanche 安全漏洞 — Avalanche 9.1AICriticalAI2024-08-14
CVE-2024-36136 Ivanti Avalanche 安全漏洞 — Avalanche 7.5AIHighAI2024-08-14
CVE-2024-37399 Ivanti Avalanche 安全漏洞 — Avalanche 7.5AIHighAI2024-08-14
CVE-2024-38653 Ivanti Avalanche 安全漏洞 — Avalanche 7.5AIHighAI2024-08-14
CVE-2024-28986 SolarWinds Web Help Desk Java Deserialization Remote Code Execution Vulnerability — Web Help DeskCWE-502 9.8 Critical2024-08-13
CVE-2024-7593 Ivanti Virtual Traffic Manager 安全漏洞 — vTMCWE-287 9.8 Critical2024-08-13
CVE-2024-7569 Ivanti ITSM 安全漏洞 — ITSMCWE-922 9.6 Critical2024-08-13
CVE-2024-6788 Phoenix Contact: update feature from CHARX controller can be used to reset a low privilege user password — CHARX SEC-3000CWE-1392 8.6 High2024-08-13
CVE-2024-38502 Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows stored XSS — ICDM-RX/TCP-DB9/RJ45-DINCWE-79 7.1 High2024-08-13
CVE-2024-38501 Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows HTML injection — ICDM-RX/TCP-DB9/RJ45-DINCWE-79 6.1 Medium2024-08-13
CVE-2024-5849 Pepperl+Fuchs: Device Master ICDM-RX/* XSS vulnerability allows reflected XSS — ICDM-RX/TCP-DB9/RJ45-DINCWE-79 7.1 High2024-08-13
CVE-2024-3913 Phoenix Contact: Start sequence allows attack during the boot process — CHARX SEC-3000 (1139022)CWE-552 5.9 Medium2024-08-13
CVE-2024-41904 Siemens SINEC Traffic Analyzer 安全漏洞 — SINEC Traffic AnalyzerCWE-307 7.5 High2024-08-13
CVE-2024-41682 Siemens Location Intelligence Perpetual 安全漏洞 — Location Intelligence familyCWE-307 5.3 Medium2024-08-13
CVE-2024-41681 Siemens Location Intelligence Perpetual 加密问题漏洞 — Location Intelligence familyCWE-326 6.7 Medium2024-08-13
CVE-2024-41732 Improper Access Control in SAP Netweaver Application Server ABAP — SAP NetWeaver Application Server ABAPCWE-284 4.7 Medium2024-08-13
CVE-2024-7094 JS Help Desk – The Ultimate Help Desk & Support Plugin <= 2.8.6 - Unauthenticated PHP Code Injection to Remote Code Execution — JS Help Desk – AI-Powered Support & Ticketing SystemCWE-94 9.8 Critical2024-08-13
CVE-2024-41711 Mitel 6800 Series 安全漏洞 — n/a 6.8AIMediumAI2024-08-13
CVE-2024-38530 Open eClass Platform allows Arbitrary File Upload in "modules/h5p/save.php" — openeclassCWE-434 9.8 Critical2024-08-12
CVE-2024-7693 Team Johnlong software Raiden MAILD Remote Management System - Arbitrary File Reading through Path Traversal — Raiden MAILD Remote Management SystemCWE-23 7.5 High2024-08-12
CVE-2024-33535 Zimbra Collaboration Server 安全漏洞 — n/a 7.5AIHighAI2024-08-12

Vulnerabilities classified as access:pre-auth represent 18893 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.