目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1000

100.0%

access:pre-auth 标签下的 CVE 漏洞 19043

access:pre-auth 类型相关 19043 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。

“access:pre-auth”标签标识了无需身份验证即可触发的漏洞,涵盖18971个CVE。此类漏洞之所以关键,是因为攻击者无需凭证即可直接利用,极大降低了攻击门槛并扩大了潜在受害面。典型场景包括远程代码执行、未授权数据访问及拒绝服务攻击,常见于配置错误的API接口、默认凭证服务或存在逻辑缺陷的认证前处理模块,对系统安全性构成直接且严重的威胁。

CVE ID标题CVSS风险等级Published
CVE-2022-41618 WordPress plugin Media Library Assistant 日志信息泄露漏洞 — Media Library Assistant (WordPress plugin)CWE-200 3.7 Low2022-11-18
CVE-2022-24038 Karmasis Infraskope Agent 访问控制错误漏洞 — Infraskope SIEM+CWE-284 6.5 Medium2022-11-18
CVE-2022-24037 Karmasis Infraskope Agent 输入验证错误漏洞 — Infraskope SIEM+CWE-20 8.2 High2022-11-18
CVE-2022-41132 WordPress plugin Ezoic 跨站脚本漏洞 — Ezoic (WordPress plugin)CWE-264 6.1 Medium2022-11-17
CVE-2022-43781 Atlassian Bitbucket Server和Bitbucket Data Center 命令注入漏洞 — Bitbucket Data Center 8.8 -2022-11-17
CVE-2022-38165 F-Secure Policy Manager 安全漏洞 — n/a 9.1 -2022-11-17
CVE-2022-42894 Siemens syngo Dynamics 代码问题漏洞 — syngo DynamicsCWE-918 7.5 -2022-11-17
CVE-2022-42982 BKG Professional NtripCaster 访问控制错误漏洞 — n/a 5.3 -2022-11-17
CVE-2022-4021 WordPress plugin Permalink Manager Lite 跨站请求伪造漏洞 — Permalink Manager LiteCWE-352 8.8 High2022-11-16
CVE-2022-24036 Karmasis Infraskope Agent 访问控制错误漏洞 — Infraskope SIEM+CWE-284 8.6 High2022-11-16
CVE-2022-44004 BACKCLICK 授权问题漏洞 — n/a 9.8 -2022-11-16
CVE-2022-44006 BACKCLICK 路径遍历漏洞 — n/a 9.8 -2022-11-16
CVE-2022-3240 WordPress plugin Follow Me Plugin 跨站请求伪造漏洞 — Follow Me PluginCWE-352 8.8 High2022-11-15
CVE-2022-3480 Phoenix Contact FL MGUARD DM 安全漏洞 — FL MGUARD CENTERPORTCWE-770 7.5 High2022-11-15
CVE-2022-38201 Esri Portal For ArcGIS 输入验证错误漏洞 — ArcGIS QuickcaptureCWE-601 6.1 Medium2022-11-15
CVE-2022-42978 Atlassian Confluence 安全漏洞 — n/a 7.5 -2022-11-15
CVE-2022-45385 Jenkins Plugin CloudBees Docker Hub/Registry Notification 安全漏洞 — Jenkins CloudBees Docker Hub/Registry Notification Plugin 7.5 -2022-11-15
CVE-2022-45388 Jenkins Plugin Config Rotator 路径遍历漏洞 — Jenkins Config Rotator Plugin 7.5 -2022-11-15
CVE-2022-45389 Jenkins Plugin XP-Dev 安全漏洞 — Jenkins XP-Dev Plugin 7.5 -2022-11-15
CVE-2022-3415 WordPress plugin Chat Bubble 跨站脚本漏洞 — Chat Bubble – Floating Chat with Contact Chat Icons, Messages, Telegram, Email, SMS, Call me backCWE-79 6.1 -2022-11-14
CVE-2022-3477 WordPress plugin tagDiv Composer 授权问题漏洞 — tagDiv ComposerCWE-287 8.1 -2022-11-14
CVE-2022-3538 WordPress plugin Webmaster Tools Verification 安全漏洞 — Webmaster Tools VerificationCWE-862 7.5 -2022-11-14
CVE-2022-45378 Apache SOAP 访问控制错误漏洞 — Apache SOAPCWE-306 9.8 -2022-11-14
CVE-2022-38650 VMware Hyperic 代码问题漏洞 — n/a 10.0 -2022-11-12
CVE-2022-28667 Intel PROSet/Wireless WiFi Software 缓冲区错误漏洞 — Intel(R) PROSet/Wireless WiFi software 6.5 Medium2022-11-11
CVE-2022-26047 Intel WIFI Drivers 输入验证错误漏洞 — Intel(R) PROSet/Wireless WiFi, Intel vPro(R) CSME WiFi and Killer(TM) WiFi products 4.3 Medium2022-11-11
CVE-2022-26513 Intel XMM 缓冲区错误漏洞 — Intel(R) XMM(TM) 7560 Modem software 8.0 High2022-11-11
CVE-2022-29486 Intel Hyperscan 缓冲区错误漏洞 — Hyperscan library maintained by Intel(R) 4.3 Medium2022-11-11
CVE-2022-33942 Intel Data Center Manager 安全漏洞 — Intel(R) DCM software 8.8 High2022-11-11
CVE-2022-27233 Intel Quartus Prime 安全漏洞 — Intel(R) Quartus Prime Pro and Standard edition software 6.5 Medium2022-11-11

access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 19043 条 CVE 漏洞。