Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 18965

18965 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

CVE IDTitleCVSSSeverityPublished
CVE-2023-49096 Argument Injection in FFmpeg codec parameters in Jellyfin — jellyfinCWE-88 7.7 High2023-12-06
CVE-2023-46688 Pleasanter 安全漏洞 — Pleasanter 6.1 -2023-12-06
CVE-2023-6527 Email Subscription Popup <= 1.2.18 - Reflected Cross-Site Scripting — Email Subscription PopupCWE-79 6.1 Medium2023-12-06
CVE-2023-48849 Ruijie Networks RG-EG Series Routers 安全漏洞 — n/a 9.8 -2023-12-06
CVE-2023-6448 Unitronics VisiLogic uses a default administrative password — VisiLogicCWE-1188 9.8 Critical2023-12-05
CVE-2023-44298 Dell PowerEdge Server BIOS 安全漏洞 — PowerEdge BIOSCWE-1234 3.6 Low2023-12-05
CVE-2023-44297 Dell PowerEdge Server BIOS 安全漏洞 — PowerEdge BIOSCWE-1234 7.1 High2023-12-05
CVE-2023-49070 Pre-auth RCE in Apache Ofbiz 18.12.09 due to XML-RPC still present — Apache OFBizCWE-94 9.8 -2023-12-05
CVE-2023-6269 Argument injection vulnerability in Atos Unify OpenScape Session Border Controller, Atos Unify OpenScape Branch and Atos Unify OpenScape BCF — OpenScape Session Border Controller (SBC)CWE-88 10.0 Critical2023-12-05
CVE-2023-5188 WAGO Improper Input Validation in IEC61850 Server / Telecontrol — Telecontrol ConfiguratorCWE-20 7.5 High2023-12-05
CVE-2023-39248 Dell OS10 Networking Switches 安全漏洞 — Dell Networking OS10CWE-400 7.5 High2023-12-05
CVE-2023-44288 Dell PowerScale OneFS 安全漏洞 — PowerScale OneFSCWE-664 7.5 High2023-12-05
CVE-2023-6063 WP Fastest Cache < 1.2.2 - Unauthenticated SQL Injection — WP Fastest Cache 9.8AICriticalAI2023-12-04
CVE-2023-5884 Word Balloon < 4.20.3 - Avatar Removal via CSRF — Word Balloon 4.3AIMediumAI2023-12-04
CVE-2023-49080 Jupyter Server errors include tracebacks with path information — jupyter_serverCWE-209 3.5 Low2023-12-04
CVE-2023-44302 Dell DM5500 安全漏洞 — Dell PowerProtect Data Manager DM5500 ApplianceCWE-287 8.1 High2023-12-04
CVE-2023-44305 Dell DM5500 安全漏洞 — Dell PowerProtect Data Manager DM5500 ApplianceCWE-121 8.1 High2023-12-04
CVE-2023-47279 Delta Electronics InfraSuite Device Master Path Traversal — InfraSuite Device MasterCWE-22 7.5 High2023-11-30
CVE-2023-47207 Delta Electronics InfraSuite Device Master Deserialization of Untrusted Data — InfraSuite Device MasterCWE-502 9.8 Critical2023-11-30
CVE-2023-5909 Improper Validation of Certificate with Host Mismatch in PTC KEPServerEx — KEPServerEXCWE-297 7.5 High2023-11-30
CVE-2023-39226 Delta Electronics InfraSuite Device Master Exposed Dangerous Method Or Function — InfraSuite Device MasterCWE-749 9.8 Critical2023-11-30
CVE-2023-6376 Henschen & Associates court document management software cache uses predictable file names — court document management softwareCWE-330 5.3 Medium2023-11-30
CVE-2023-6375 Tyler Technologies Magistrate Court Case Management Plus stores backups insecurely — Court Case Management PlusCWE-552 5.3 Medium2023-11-30
CVE-2023-6354 Tyler Technologies Magistrate Court Case Management Plus PDFViewer.aspx allows authentication bypass — Magistrate Court Case Management PlusCWE-287 5.3 Medium2023-11-30
CVE-2023-6353 Tyler Technologies Civil and Criminal Electronic Filing Upload.aspx allows authentication bypass — Civil and Criminal Electronic FilingCWE-287 5.3 Medium2023-11-30
CVE-2023-6344 Tyler Technologies Court Case Management Plus use of Aquaforest TIFF Server te003.aspx and te004.aspx allows authentication bypass — Court Case Management PlusCWE-287 5.3 Medium2023-11-30
CVE-2023-6343 Tyler Technologies Court Case Management Plus use of Aquaforest TIFF Server tssp.aspx allows authentication bypass — Court Case Management PlusCWE-287 5.3 Medium2023-11-30
CVE-2023-6341 Catalis CM360 allows authentication bypass — CMS360CWE-639 5.3 Medium2023-11-30
CVE-2023-2265 Improper restriction of rendered UI layers or frames could lead to clickjacking attack — SEL-411LCWE-1021 4.3 Medium2023-11-30
CVE-2023-34388 Improper authentication could lead to session hijacking — SEL-451CWE-287 6.5 Medium2023-11-30

Vulnerabilities classified as access:pre-auth represent 18965 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.