Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18893

18893 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2024-6494 WordPress File Upload < 4.24.8 - Unauthenticated Stored XSS — WordPress File Upload 6.1AIMediumAI2024-08-07
CVE-2024-41243 Kashipara Responsive School Management System 安全漏洞 — n/a 5.3AIMediumAI2024-08-07
CVE-2024-41244 Kashipara Responsive School Management System 安全漏洞 — n/a 5.3AIMediumAI2024-08-07
CVE-2024-41245 Kashipara Responsive School Management System 安全漏洞 — n/a 5.3AIMediumAI2024-08-07
CVE-2024-41246 Kashipara Responsive School Management System 安全漏洞 — n/a 5.3AIMediumAI2024-08-07
CVE-2024-41247 Kashipara Responsive School Management System 安全漏洞 — n/a 5.3AIMediumAI2024-08-07
CVE-2024-41248 Kashipara Responsive School Management System 安全漏洞 — n/a 5.3AIMediumAI2024-08-07
CVE-2024-41249 Kashipara Responsive School Management System 安全漏洞 — n/a 5.3AIMediumAI2024-08-07
CVE-2024-41250 Kashipara Responsive School Management System 安全漏洞 — n/a 5.3AIMediumAI2024-08-07
CVE-2024-41251 Kashipara Responsive School Management System 安全漏洞 — n/a 6.5AIMediumAI2024-08-07
CVE-2024-41252 Kashipara Responsive School Management System 安全漏洞 — n/a 6.5AIMediumAI2024-08-07
CVE-2024-38166 Microsoft Dynamics 365 Cross-site Scripting Vulnerability — Dynamics CRM Service Portal Web ResourceCWE-79 8.2 High2024-08-06
CVE-2024-42400 Unauthenticated Denial-of-Service (DoS) Vulnerabilities in the Soft AP Daemon Service Accessed by the PAPI Protocol — HPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10 5.3 Medium2024-08-06
CVE-2024-42399 Unauthenticated Denial-of-Service (DoS) Vulnerabilities in the Soft AP Daemon Service Accessed by the PAPI Protocol — HPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10 5.3 Medium2024-08-06
CVE-2024-42398 Unauthenticated Denial-of-Service (DoS) Vulnerabilities in the Soft AP Daemon Service Accessed by the PAPI Protocol — HPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10 5.3 Medium2024-08-06
CVE-2024-42393 Unauthenticated Stack-Based Buffer Overflow Remote Command Execution (RCE) in the Soft AP Daemon Service Accessed by the PAPI Protocol — Hpe Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10 9.8 Critical2024-08-06
CVE-2024-42394 Unauthenticated Stack-Based Buffer Overflow Remote Command Execution (RCE) in the Soft AP Daemon Service Accessed by the PAPI Protocol — HPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10 9.8 Critical2024-08-06
CVE-2024-42395 Unauthenticated Stack-Based Buffer Overflow Remote Command Execution (RCE) in the AP Certificate Management Service Accessed by the PAPI Protocol — HPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10 9.8 Critical2024-08-06
CVE-2024-42396 Unauthenticated Denial-of-Service (DoS) Vulnerabilities in the AP Certificate Management Service Accessed by the PAPI Protocol — HPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10 5.3 Medium2024-08-06
CVE-2024-42397 Unauthenticated Denial-of-Service (DoS) Vulnerabilities in the AP Certificate Management Service Accessed by the PAPI Protocol — HPE Aruba Networking InstantOS and Aruba Access Points running ArubaOS 10 5.3 Medium2024-08-06
CVE-2024-28962 Dell Update和Dell Alienware Update 安全漏洞 — Dell Update (DU)CWE-610 6.5 Medium2024-08-06
CVE-2024-6782 Calibre Remote Code Execution — CalibreCWE-863 9.8 Critical2024-08-06
CVE-2024-6781 Calibre Arbitrary File Read — CalibreCWE-22 7.5 High2024-08-06
CVE-2024-7485 Traffic Manager <= 1.4.5 - Unauthenticated Stored Cross-Site Scripting — Traffic ManagerCWE-79 7.2 High2024-08-06
CVE-2024-39227 GL.iNet多款产品 安全漏洞 — n/a 9.1AICriticalAI2024-08-06
CVE-2024-40101 Microweber 安全漏洞 — n/a 6.1AIMediumAI2024-08-06
CVE-2024-41959 Cross-site Scripting (XSS) via API Logs in mailcow: dockerized — mailcow-dockerizedCWE-79 7.6 High2024-08-05
CVE-2024-38856 Apache OFBiz: Unauthenticated endpoint could allow execution of screen rendering code — Apache OFBizCWE-863 5.6AIMediumAI2024-08-05
CVE-2024-41889 Pimax Play 安全漏洞 — Pimax Play 9.8AICriticalAI2024-08-05
CVE-2024-7257 YayExtra – WooCommerce Extra Product Options <= 1.3.7 - Unauthenticated Arbitrary File Upload via handle_upload_file Function — YayExtra – WooCommerce Extra Product OptionsCWE-434 9.8 Critical2024-08-03

Vulnerabilities classified as access:pre-auth represent 18893 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.