Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18942

18942 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2024-1538 File Manager <= 7.2.4 - Cross-Site Request Forgery to Local JS File Inclusion — File ManagerCWE-352 8.8 High2024-03-21
CVE-2023-48901 Autoexpress 安全漏洞 — n/a 9.8AICriticalAI2024-03-21
CVE-2023-48902 Autoexpress 安全漏洞 — n/a 9.8AICriticalAI2024-03-21
CVE-2023-48903 AutoExpress 安全漏洞 — n/a 6.1AIMediumAI2024-03-21
CVE-2024-28179 Jupyter Server Proxy's Websocket Proxying does not require authentication — jupyter-server-proxyCWE-306 9.1 Critical2024-03-20
CVE-2024-1711 Create by Mediavine <= 1.9.4 - Unauthenticated SQL Injection via 'id' — CreateCWE-89 9.8 Critical2024-03-20
CVE-2024-1325 Live Sales Notification for Woocommerce – Woomotiv <= 3.4.3 - Cross-Site Request Forgery via ajax_cancel_review — Live Sales Notification for Woocommerce – WoomotivCWE-352 4.3 Medium2024-03-20
CVE-2024-1379 Website Article Monetization By MageNet <= 1.0.11 - Unauthenticated Stored Cross-Site Scripting — Website Article Monetization By MageNetCWE-79 6.1 Medium2024-03-20
CVE-2024-1119 Order Tip for WooCommerce <= 1.3.1 - Missing Authorization to Unauthenticated Data Export — Order Tip for WooCommerceCWE-862 5.3 Medium2024-03-20
CVE-2024-1181 Coming Soon, Under Construction & Maintenance Mode By Dazzler <= 2.1.2 - Maintenance Mode Bypass — Coming Soon, Under Construction & Maintenance Mode By DazzlerCWE-862 5.3 Medium2024-03-20
CVE-2024-1473 Coming Soon & Maintenance Mode by Colorlib <= 1.0.99 - Information Exposure — Coming Soon & Maintenance Mode by ColorlibCWE-284 5.3 Medium2024-03-20
CVE-2024-0337 Travelpayouts <= 1.1.15 - Open Redirect — Travelpayouts: All Travel Brands in One Place 6.1AIMediumAI2024-03-20
CVE-2024-1785 Contests by Rewards Fuel <= 2.0.62 - Cross-Site Request Forgery to Stored Cross-Site Scripting — Contests by Rewards FuelCWE-352 5.4 Medium2024-03-20
CVE-2024-2387 Advanced Form Integration – Connect WooCommerce and Contact Form 7 to Google Sheets and other platforms <= 1.82.0 - SQL Injection to Reflected Cross-Site Scripting via integration_id — AFI – The Easiest Integration PluginCWE-89 6.1 Medium2024-03-20
CVE-2024-22080 Elspec G5 digital fault recorder 安全漏洞 — n/a 9.8AICriticalAI2024-03-20
CVE-2024-22081 Elspec G5 digital fault recorder 安全漏洞 — n/a 9.1AICriticalAI2024-03-20
CVE-2024-22082 Elspec G5 digital fault recorder 安全漏洞 — n/a 5.3AIMediumAI2024-03-20
CVE-2024-2169 Implementations of UDP application protocols are susceptible to network loops and denial of service — RouterOS-TFTP 7.5AIHighAI2024-03-19
CVE-2024-21677 Atlassian Confluence Server 安全漏洞 — Confluence Data Center 8.3AIHighAI2024-03-19
CVE-2024-1144 Improper Access Control at Alma Devklan Blog — Alma BlogCWE-284 6.5 Medium2024-03-19
CVE-2023-40276 OpenClinic GA 安全漏洞 — n/a 7.5AIHighAI2024-03-19
CVE-2024-24578 RaspberryMatic Unauthenticated Remote Code Execution vulnerability through HMServer File Upload — RaspberryMaticCWE-23 10.0 Critical2024-03-18
CVE-2023-7236 Backup Bolt <= 1.3.0 - Sensitive Data Exposure — Backup Bolt 5.3 -2024-03-18
CVE-2024-0779 Enjoy Social Feed <= 6.2.2 - Unauthenticated Arbitrary Instagram Account Unlinking — Enjoy Social Feed plugin for WordPress website 4.3 -2024-03-18
CVE-2024-27914 Reflected Cross-Site Scripting (XSS) in search engine when debug mode is enabled in GLPI — glpiCWE-79 5.3 Medium2024-03-18
CVE-2024-2052 Schneider Electric Easergy T200 安全漏洞 — Easergy T200 (Modbus) Models: T200I, T200E, T200P, T200S, T200H CWE-552 7.5 High2024-03-18
CVE-2024-28039 FitNesse 安全漏洞 — FitNesse 9.8 -2024-03-18
CVE-2024-22475 Brother Industries Web Based Management安全漏洞 — Multiple printers and scanners 8.1AIHighAI2024-03-18
CVE-2024-27974 Fujifilm DocuPrint 安全漏洞 — DocuPrint P450 d 6.5AIMediumAI2024-03-18
CVE-2024-28128 FitNesse 安全漏洞 — FitNesse 6.1 -2024-03-18

Vulnerabilities classified as access:pre-auth represent 18942 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.