目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1000

100.0%

access:pre-auth 标签下的 CVE 漏洞 19065

access:pre-auth 类型相关 19065 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。

“access:pre-auth”标签标识了无需身份验证即可触发的漏洞,涵盖18971个CVE。此类漏洞之所以关键,是因为攻击者无需凭证即可直接利用,极大降低了攻击门槛并扩大了潜在受害面。典型场景包括远程代码执行、未授权数据访问及拒绝服务攻击,常见于配置错误的API接口、默认凭证服务或存在逻辑缺陷的认证前处理模块,对系统安全性构成直接且严重的威胁。

CVE ID标题CVSS风险等级Published
CVE-2022-28697 Intel Active Management Technology 安全漏洞 — Intel(R) AMT and Intel(R) Standard Manageability 6.8 -2022-08-18
CVE-2022-30601 Intel Active Management Technology 安全漏洞 — Intel(R) AMT and Intel(R) Standard Manageability 9.8 -2022-08-18
CVE-2022-37060 Teledyne FLIR AX8 路径遍历漏洞 — n/a 7.5 -2022-08-18
CVE-2022-35122 Ecowitt GW1100 Series Weather Stations 访问控制错误漏洞 — n/a 9.1 -2022-08-17
CVE-2022-1401 Device42 访问控制错误漏洞 — CMDBCWE-863 6.9 Medium2022-08-16
CVE-2022-38184 Esri Portal For ArcGis 安全漏洞 — Portal for ArcGISCWE-284 7.5 High2022-08-16
CVE-2022-38193 Esri Portal For ArcGis 代码注入漏洞 — Portal for ArcGISCWE-95 6.1 Medium2022-08-16
CVE-2022-2846 WordPress plugin Calendar Event Multi View 跨站请求伪造漏洞 — Calendar Event Multi ViewCWE-862 4.3 -2022-08-16
CVE-2022-38187 Esri Portal For ArcGis 安全漏洞 — Portal for ArcGISCWE-918 7.5 High2022-08-15
CVE-2022-38190 Esri Portal For ArcGis 跨站脚本漏洞 — Portal for ArcGISCWE-79 6.1 Medium2022-08-15
CVE-2022-2535 WordPress plugin SearchWP Live Ajax Search 安全漏洞 — SearchWP Live Ajax SearchCWE-639 5.3 -2022-08-15
CVE-2022-2379 WordPress plugin Easy Student Results 跨站脚本漏洞 — Easy Student ResultsCWE-862 7.5 -2022-08-15
CVE-2022-2180 WordPress theme GREYD.SUITE 代码问题漏洞 — greyd_suiteCWE-434 9.8 -2022-08-15
CVE-2021-29117 Esri ArcReader 资源管理错误漏洞 — ArcReaderCWE-416 7.8 -2022-08-12
CVE-2021-29112 Esri ArcReader 缓冲区错误漏洞 — ArcReaderCWE-125 5.5 -2022-08-12
CVE-2021-29118 Esri ArcReader 缓冲区错误漏洞 — ArcReaderCWE-125 5.5 -2022-08-12
CVE-2022-37397 YugabyteDB 授权问题漏洞 — Yugabyte DBCWE-287 8.3 High2022-08-12
CVE-2021-22289 B&R Automation Studio 输入验证错误漏洞 — Automation StudioCWE-20 8.3 High2022-08-11
CVE-2022-33927 Dell Wyse Management Suite 授权问题漏洞 — Wyse Management SuiteCWE-384 5.4 Medium2022-08-10
CVE-2022-20866 Cisco Firepower Threat Defense 和Cisco Adaptive Security Appliances Software 安全漏洞 — Cisco Adaptive Security Appliance (ASA) SoftwareCWE-203 7.4 High2022-08-10
CVE-2022-20713 Cisco Adaptive Security Appliances Software 跨站脚本漏洞 — Cisco Adaptive Security Appliance (ASA) SoftwareCWE-444 4.3 Medium2022-08-10
CVE-2022-38130 Keysight Technologies Sensor Management Server SQL注入漏洞 — Keysight Technologies Sensor Management Server 9.8 -2022-08-10
CVE-2022-38129 Keysight Technologies Sensor Management Server 路径遍历漏洞 — Keysight Technologies Sensor Management Server 9.1 -2022-08-10
CVE-2022-36923 多款ZOHO ManageEngine产品安全漏洞 — n/a 7.5 -2022-08-10
CVE-2022-36324 多款Siemens SCALANCE产品安全漏洞 — RUGGEDCOM RM1224 LTE(4G) EUCWE-770 7.5 High2022-08-10
CVE-2021-46304 Siemens SICAM A8000 CP-8000 安全漏洞 — CP-8000 MASTER MODULE WITH I/O -25/+70°CCWE-284 7.5 -2022-08-10
CVE-2022-20827 Cisco Small Business RV Series Routers 操作系统命令注入漏洞 — Cisco Small Business RV Series Router FirmwareCWE-120 9.0 Critical2022-08-10
CVE-2022-20869 Cisco BroadWorks Application 跨站脚本漏洞 — Cisco BroadWorksCWE-79 6.1 Medium2022-08-10
CVE-2022-20842 Cisco Small Business RV Series Routers 输入验证错误漏洞 — Cisco Small Business RV Series Router FirmwareCWE-120 9.0 Critical2022-08-10
CVE-2022-20841 Cisco Small Business RV Series Routers 输入验证错误漏洞 — Cisco Small Business RV Series Router FirmwareCWE-120 9.0 Critical2022-08-10

access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 19065 条 CVE 漏洞。