Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18893

18893 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2023-48724 TP-LINK AC1350 安全漏洞 — AC1350 Wireless MU-MIMO Gigabit Access Point (EAP225 V3)CWE-121 7.5 High2024-04-09
CVE-2024-3046 Eclipse Kura 安全漏洞 — KuraCWE-303 7.5 High2024-04-09
CVE-2023-1083 Welotec: improper access control in TK500v1 router series — TK515LCWE-306 9.8 Critical2024-04-09
CVE-2023-7164 BackWPup < 4.0.4 - Unauthenticated Backup Download — BackWPup 7.5AIHighAI2024-04-08
CVE-2024-1958 WPB Show Core < 2.7 - Reflected XSS — wpb-show-core 6.1AIMediumAI2024-04-08
CVE-2024-1956 WPB Show Core < 2.7 - Reflected XSS — wpb-show-core 6.1AIMediumAI2024-04-08
CVE-2024-28744 FURUNO ACERA 安全漏洞 — ACERA 9010-08 5.2AIMediumAI2024-04-08
CVE-2024-2950 BoldGrid Easy SEO – Simple and Effective SEO <= 1.6.14 - Information Exposure — BoldGrid Easy SEO – Simple and Effective SEOCWE-200 5.3 Medium2024-04-06
CVE-2024-3216 WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels <= 4.4.2 - Missing Authorization to Unauthenticated Settings Reset — WebToffee WooCommerce PDF Invoices, Packing Slips, Delivery Notes & Shipping LabelsCWE-862 5.3 Medium2024-04-06
CVE-2024-27911 Lenovo Printer 安全漏洞 — PrintersCWE-862 7.5 High2024-04-05
CVE-2024-27910 Lenovo Printer 安全漏洞 — PrintersCWE-862 5.3 Medium2024-04-05
CVE-2023-4605 Lenovo XClarity Administrator 安全漏洞 — XClarity AdministratorCWE-497 6.5 Medium2024-04-05
CVE-2024-31851 CData Sync 安全漏洞 — SyncCWE-22 8.6 High2024-04-05
CVE-2024-31850 CData Arc 安全漏洞 — ArcCWE-22 8.6 High2024-04-05
CVE-2024-31849 CData Connect 安全漏洞 — ConnectCWE-22 9.8 Critical2024-04-05
CVE-2024-31848 CData API Server 安全漏洞 — API ServerCWE-22 9.8 Critical2024-04-05
CVE-2024-31220 Sunshine vulnerable to remote unauthenticated arbitrary file read — SunshineCWE-22 7.3 High2024-04-05
CVE-2024-31218 Missing Authentication for Critical Function in Webhood backend — webhoodCWE-306 9.8 Critical2024-04-05
CVE-2023-5692 WordPress Core <= 6.4.3 - Sensitive Information Exposure via redirect_guess_404_permalink — WordPressCWE-200 5.3 Medium2024-04-05
CVE-2024-2115 LearnPress – WordPress LMS Plugin <= 4.0.0 - Cross-Site Request Forgery to Privilege Escalation — LearnPress – WordPress LMS Plugin for Create and Sell Online CoursesCWE-352 8.8 High2024-04-05
CVE-2024-21894 Ivanti Connect Secure和Ivanti Policy Secure 缓冲区错误漏洞 — Connect Secure 9.8 -2024-04-04
CVE-2024-22023 Ivanti Connect Secure和Ivanti Policy Secure 代码问题漏洞 — Connect Secure 5.3 -2024-04-04
CVE-2024-22052 Ivanti Connect Secure和Ivanti Policy Secure 代码问题漏洞 — Connect Secure 7.5 -2024-04-04
CVE-2024-22053 Ivanti Connect Secure和Ivanti Policy Secure 缓冲区错误漏洞 — Connect Secure 9.1 -2024-04-04
CVE-2024-29192 GHSL-2023-206 gotortc Cross-Site Request Forgery vulnerability — go2rtcCWE-352 8.8 High2024-04-04
CVE-2024-25706 HTMLi at createFolder Content Injection — Portal for ArcGISCWE-94 6.1 Medium2024-04-04
CVE-2024-25698 Reflected XSS in Portal for ArcGIS — Portal for ArcGISCWE-79 6.1 Medium2024-04-04
CVE-2024-25690 HTML injection in ArcGIS Web AppBuilder — ArcGIS Enterprise Web App BuilderCWE-80 4.7 Medium2024-04-04
CVE-2024-25692 BUG-000154722 - Cross-site request forgery (CSRF) issue in Portal for ArcGIS — Portal for ArcGISCWE-352 5.4 Medium2024-04-04
CVE-2024-2759 Improper access control in Apaczka plugin for PrestaShop — ApaczkaCWE-552 5.3 -2024-04-04

Vulnerabilities classified as access:pre-auth represent 18893 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.