Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18965

18965 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2023-48722 Student Result Management System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Student Result Management SystemCWE-89 9.8 Critical2023-12-21
CVE-2023-48720 Student Result Management System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Student Result Management SystemCWE-89 9.8 Critical2023-12-21
CVE-2023-48718 Student Result Management System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Student Result Management SystemCWE-89 9.8 Critical2023-12-21
CVE-2023-48716 Student Result Management System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Student Result Management SystemCWE-89 9.8 Critical2023-12-21
CVE-2023-48689 Railway Reservation System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Railway Reservation SystemCWE-89 9.8 Critical2023-12-21
CVE-2023-48687 Railway Reservation System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Railway Reservation SystemCWE-89 9.8 Critical2023-12-21
CVE-2023-48685 Railway Reservation System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Railway Reservation SystemCWE-89 9.8 Critical2023-12-21
CVE-2023-48434 Online Voting System Project v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Online Voting System ProjectCWE-89 9.8 Critical2023-12-20
CVE-2023-48433 Online Voting System Project v1.0 - Multiple Unauthenticated SQL Injections (SQLi) — Online Voting System ProjectCWE-89 9.8 Critical2023-12-20
CVE-2023-6768 Authentication bypass vulnerability in Amazing Little Poll — Amazing Little pollCWE-287 9.4 Critical2023-12-20
CVE-2023-37544 Apache Pulsar WebSocket Proxy: Improper Authentication for WebSocket Proxy Endpoint Allows DoS — Apache Pulsar WebSocket ProxyCWE-287 7.5 High2023-12-20
CVE-2023-6930 Improper Access Control in EuroTel ETL3100 — ETL3100CWE-284 9.4 Critical2023-12-19
CVE-2023-46262 Wavelink Avalanche 安全漏洞 — Avalanche 9.8 -2023-12-19
CVE-2023-46265 Wavelink Avalanche 安全漏洞 — Avalanche 7.5 -2023-12-19
CVE-2023-49706 KeyIdentity LinOTP 安全漏洞 — n/a 8.1AIHighAI2023-12-19
CVE-2023-5348 Product Catalog Enquiry for WooCommerce < 5.0.3 - Unauthenticated Stored XSS via Arbitrary Setting Update — Product Catalog Mode For WooCommerce 6.1AIMediumAI2023-12-18
CVE-2023-6203 The Events Calendar < 6.2.8.1 - Unauthenticated Arbitrary Password Protected Post Read — The Events Calendar 7.5AIHighAI2023-12-18
CVE-2022-41677 Bosch IP cameras 信息泄露漏洞 — Camera FirmwareCWE-284 5.3 Medium2023-12-18
CVE-2023-35867 部分Bosch产品 安全漏洞 — BVMSCWE-703 5.9 Medium2023-12-18
CVE-2023-32230 部分Bosch产品 安全漏洞 — Video Recording ManagerCWE-703 7.5 High2023-12-18
CVE-2023-28053 Dell NetWorker 安全漏洞 — NetWorker Virtual EditionCWE-327 5.3 Medium2023-12-18
CVE-2023-41314 Apache Doris: Missing API authentication allowed DoS — Apache DorisCWE-863 9.1AICriticalAI2023-12-18
CVE-2023-6483 Improper Authentication Vulnerability in ADiTaaS — Allied Digital Integrated Tool-as-a-ServiceCWE-287 9.1 Critical2023-12-18
CVE-2023-6559 MW WP Form <= 5.0.3 - Improper Limitation of File Name to Unauthenticated Arbitrary File Deletion — MW WP FormCWE-22 7.5 High2023-12-16
CVE-2023-50784 UnrealIRCd 安全漏洞 — n/a 9.8 -2023-12-16
CVE-2021-42796 AVEVA Edge 安全漏洞 — n/a 9.8 -2023-12-16
CVE-2021-42797 AVEVA Edge 安全漏洞 — n/a 9.1 -2023-12-16
CVE-2023-6553 Backup Migration <= 1.3.7 - Unauthenticated Remote Code Execution — BackupBliss – Backup & Migration with Free Cloud StorageCWE-94 9.8 Critical2023-12-15
CVE-2023-6838 WSO2 API Manager 跨站脚本漏洞 — WSO2 API ManagerCWE-79 6.1 Medium2023-12-15
CVE-2023-48392 Kaifa Technology WebITR - Hard-coded Cryptographic Key — WebITRCWE-321 9.8 Critical2023-12-15

Vulnerabilities classified as access:pre-auth represent 18965 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.