Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18893

18893 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2024-3676 Proofpoint Enterprise Protection 输入验证错误漏洞 — Enterprise ProtectionCWE-20 7.5 High2024-05-14
CVE-2024-23105 Fortinet FortiPortal 安全漏洞 — FortiPortalCWE-348 7.1 High2024-05-14
CVE-2024-26007 Fortinet FortiOS 安全漏洞 — FortiOSCWE-703 5.0 Medium2024-05-14
CVE-2024-32977 OctoPrint Authentication Bypass via X-Forwarded-For Header when autologinLocal is enabled — OctoPrintCWE-290 7.1 High2024-05-14
CVE-2024-3374 MongoDB Server (mongod) may crash when generating ftdc — MongoDB ServerCWE-617 5.3 Medium2024-05-14
CVE-2024-33498 Siemens 多款产品 资源管理错误漏洞 — SIMATIC RTLS Locating ManagerCWE-400 5.3 Medium2024-05-14
CVE-2024-33495 Siemens 多款产品 安全漏洞 — SIMATIC RTLS Locating ManagerCWE-770 6.5 Medium2024-05-14
CVE-2024-33494 Siemens 多款产品 数据伪造问题漏洞 — SIMATIC RTLS Locating ManagerCWE-345 6.5 Medium2024-05-14
CVE-2024-30207 Siemens 多款产品 安全漏洞 — SIMATIC RTLS Locating ManagerCWE-321 10.0 Critical2024-05-14
CVE-2024-30206 Siemens 多款产品 安全漏洞 — SIMATIC RTLS Locating ManagerCWE-494 8.8 High2024-05-14
CVE-2024-27942 Siemens RUGGEDCOM CROSSBOW 访问控制错误漏洞 — RUGGEDCOM CROSSBOWCWE-306 7.5 High2024-05-14
CVE-2024-27939 Siemens RUGGEDCOM CROSSBOW 安全漏洞 — RUGGEDCOM CROSSBOWCWE-862 9.8 Critical2024-05-14
CVE-2024-28134 PHOENIX CONTACT: MitM attack gains privileges of the current logged in user in CHARX Series — CHARX SEC-3000CWE-319 7.0 High2024-05-14
CVE-2024-25969 Dell PowerScale OneFS 安全漏洞 — PowerScale OneFSCWE-770 6.2 Medium2024-05-14
CVE-2024-25966 Dell PowerScale OneFS 安全漏洞 — PowerScale OneFSCWE-241 5.3 Medium2024-05-14
CVE-2024-25968 Dell PowerScale OneFS 加密问题漏洞 — PowerScale OneFSCWE-327 5.9 Medium2024-05-14
CVE-2024-4144 Simple Basic Contact Form <= 20240502 - Unauthenticated Arbitrary Shortcode Execution — Simple Basic Contact FormCWE-94 6.5 Medium2024-05-14
CVE-2024-33006 File upload vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform — SAP NetWeaver Application Server ABAP and ABAP PlatformCWE-434 9.6 Critical2024-05-14
CVE-2024-32733 Cross-Site Scripting (XSS) vulnerability in SAP NetWeaver Application Server ABAP and ABAP Platform — SAP NetWeaver Application Server ABAP and ABAP Platform CWE-79 6.1 Medium2024-05-14
CVE-2024-0870 YITH WooCommerce Gift Cards <= 4.12.0 - Missing Authorization to Unauthenticated WooCommerce Settings Update — YITH WooCommerce Gift CardsCWE-285 5.3 Medium2024-05-14
CVE-2023-6812 WP Compress – Image Optimizer [All-In-One] <= 6.20.01 - Open Redirect via css — WP Compress – Instant Performance & Speed OptimizationCWE-601 4.3 Medium2024-05-14
CVE-2024-34697 Freescout vulnerable to Stored HTML Injection in Editing Received Emails — freescoutCWE-74 7.6 High2024-05-13
CVE-2024-29895 Cacti command injection in cmd_realtime.php — cactiCWE-77 10.0 Critical2024-05-13
CVE-2024-34749 Phormer 安全漏洞 — Phormer 6.1 -2024-05-13
CVE-2024-4560 Kognetiks Chatbot for WordPress <= 1.9.9 - Unauthenticated Arbitrary File Upload via chatbot_chatgpt_upload_file_to_assistant Function — Kognetiks Chatbot for WordPressCWE-434 9.8 Critical2024-05-11
CVE-2024-4213 Shopping Cart & eCommerce Store <= 5.6.4 - Sensitive Information Exposure — Shopping Cart & eCommerce StoreCWE-922 5.3 Medium2024-05-10
CVE-2024-4413 Hotel Booking Lite <= 4.11.1 - Unauthenticated PHP Object Injection — MotoPress Hotel BookingCWE-502 9.8 Critical2024-05-10
CVE-2024-34199 TinyWeb 安全漏洞 — n/a 7.5 -2024-05-10
CVE-2024-34070 Froxlor Vulnerable to Blind XSS Leading to Froxlor Application Compromise — FroxlorCWE-79 9.7 Critical2024-05-10
CVE-2024-4039 Orders Tracking for WooCommerce <= 1.2.10 - Unauthenticated Arbitrary Shortcode Execution — Orders Tracking for WooCommerceCWE-94 6.5 Medium2024-05-10

Vulnerabilities classified as access:pre-auth represent 18893 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.