Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18893

18893 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2024-6477 UsersWP < 1.2.12 - Users Information Disclosure — UsersWP 5.3AIMediumAI2024-08-03
CVE-2024-7314 anji-plus AJ-Report Authentication Bypass — AJ-ReportCWE-288 9.8 Critical2024-08-02
CVE-2024-7029 Command Injection in AVTech AVM1203 (IP Camera) — AVM1203 (IP Camera)CWE-77 8.8 High2024-08-02
CVE-2024-6704 Comments – wpDiscuz <= 7.6.21 - Unauthenticated HTML Injection — Comments – wpDiscuzCWE-79 5.3 Medium2024-08-02
CVE-2024-7204 Ai3 QbiBot - Stored XSS — QbiBotCWE-79 6.1 Medium2024-08-02
CVE-2024-40723 CHANGING Information Technology HWATAIServiSign Windows Version - Stack-based Buffer Overflow — HWATAIServiSign Windows VersionCWE-121 4.3 Medium2024-08-02
CVE-2024-40722 CHANGING Information Technology TCBServiSign Windows Version - Stack-based Buffer Overflow — TCBServiSign Windows VersionCWE-121 4.3 Medium2024-08-02
CVE-2024-40721 CHANGING Information Technology TCBServiSign Windows Version - Improper Input Validation — TCBServiSign Windows VersionCWE-20 8.8 High2024-08-02
CVE-2024-40720 CHANGING Information Technology TCBServiSign Windows Version - Improper Input Validation — TCBServiSign Windows VersionCWE-20 8.8 High2024-08-02
CVE-2024-3238 WordPress Menu Plugin — Superfly Responsive Menu <= 5.0.29 - Cross-Site Request Forgery to Arbitrary File Deletion — WordPress Menu Plugin — Superfly Responsive MenuCWE-352 8.8 High2024-08-02
CVE-2024-7389 Forminator <= 1.29.1 - HubSpot Developer API Key Sensitive Information Exposure — Forminator Forms – Contact Form, Payment Form & Custom Form BuilderCWE-522 7.5 High2024-08-02
CVE-2024-6567 Ebook Store <= 5.8001 - Unauthenticated Full Path Disclosure — Ebook StoreCWE-200 5.3 Medium2024-08-02
CVE-2024-6873 Specially crafted request could caused undefined behaviour which may lead to Remote Code Execution. — ClickHouseCWE-122 8.1 High2024-08-01
CVE-2024-28972 Dell InsightIQ 加密问题漏洞 — InsightIQCWE-327 5.9 Medium2024-08-01
CVE-2024-38182 Microsoft Dynamics 365 Elevation of Privilege Vulnerability — Dynamics 365 Field Service (on-premises) v7 seriesCWE-1390 9.0 Critical2024-07-31
CVE-2022-4001 Motorola Q14 安全漏洞 — Q14 Mesh Router FirmwareCWE-287 7.3 High2024-07-31
CVE-2024-2508 WP Mobile Menu <= 2.8.4.4 - Missing Authorization to _mobmenu_icon Post Meta Modification — WP Mobile Menu – The Mobile-Friendly Responsive MenuCWE-862 5.3 Medium2024-07-31
CVE-2023-28074 Dell BSAFE Micro Edition Suite和Dell BSAFE Crypto-C Micro Edition 输入验证错误漏洞 — Dell BSAFE Micro Edition SuiteCWE-125 6.2 Medium2024-07-31
CVE-2024-6770 Lifetime free Drag & Drop Contact Form Builder for WordPress VForm <= 2.1.5 - Unauthenticated Stored Cross-Site Scripting — VPSUForm – Drag & Drop Contact Form Builder with Email AutomationCWE-79 7.2 High2024-07-31
CVE-2024-40895 FFRI AMC 安全漏洞 — FFRI AMC 9.8AICriticalAI2024-07-30
CVE-2024-5975 CZ Loan Management <= 1.1 - Unauthenticated SQLi — CZ Loan Management 9.8AICriticalAI2024-07-30
CVE-2024-5765 WpStickyBar <= 2.1.0 - Unauthenticated SQLi — WpStickyBar 9.8AICriticalAI2024-07-30
CVE-2024-40794 Apple iOS和Apple iPadOS 安全漏洞 — Safari 7.5AIHighAI2024-07-29
CVE-2024-40778 Apple iOS和Apple iPadOS 安全漏洞 — iOS and iPadOS 7.5AIHighAI2024-07-29
CVE-2024-6366 User Profile Builder < 3.11.8 - Unauthenticated Media Upload — User Profile Builder 7.5AIHighAI2024-07-29
CVE-2024-5882 Ultimate Classified Listings < 1.3 - Unauthenticated LFI — Ultimate Classified Listings 7.5AIHighAI2024-07-29
CVE-2024-7202 Simopro Technology WinMatrix3 Web package - SQL Injection — WinMatrix3CWE-89 9.8 Critical2024-07-29
CVE-2024-7201 Simopro Technology WinMatrix3 Web package - SQL Injection — WinMatrix3CWE-89 9.8 Critical2024-07-29
CVE-2024-5670 Softnext Mail SQR Expert and Mail Archiving Expert - OS Command Injection — SN OS 12.1CWE-78 9.8 Critical2024-07-29
CVE-2024-28806 Italtel i-MCS NFV 安全漏洞 — n/a 7.5AIHighAI2024-07-29

Vulnerabilities classified as access:pre-auth represent 18893 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.