目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1000

100.0%

access:pre-auth 标签下的 CVE 漏洞 19263

access:pre-auth 类型相关 19263 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。

“access:pre-auth”标签标识了无需身份验证即可触发的漏洞,涵盖18971个CVE。此类漏洞之所以关键,是因为攻击者无需凭证即可直接利用,极大降低了攻击门槛并扩大了潜在受害面。典型场景包括远程代码执行、未授权数据访问及拒绝服务攻击,常见于配置错误的API接口、默认凭证服务或存在逻辑缺陷的认证前处理模块,对系统安全性构成直接且严重的威胁。

CVE ID标题CVSS风险等级Published
CVE-2021-36044 Magento Commerce 和 Magento Open Source输入验证错误漏洞 — Magento CommerceCWE-20 7.5 High2021-09-01
CVE-2021-36030 Magento Commerce输入验证错误漏洞 — Magento CommerceCWE-20 7.5 High2021-09-01
CVE-2021-36020 Magento Commerce 和 Magento Open Source安全漏洞 — Magento CommerceCWE-91 8.2 High2021-09-01
CVE-2021-37415 ZOHO ManageEngine ServiceDesk Plus 访问控制错误漏洞 — n/a 9.1 -2021-09-01
CVE-2021-22002 Vmware vRealize Automation 授权问题漏洞 — VMware Workspace ONE Access, Identity Manager and vRealize Automation 9.8 -2021-08-31
CVE-2021-27668 HashiCorp Vault 访问控制错误漏洞 — n/a 5.3 -2021-08-31
CVE-2021-34581 WAGO 安全漏洞 — 750-831/xxx-xxx, 750-880/xxx-xxx, 750-881, 750-889CWE-772 7.5 High2021-08-31
CVE-2021-34578 WAGO 授权问题漏洞 — PLCCWE-287 9.8 Critical2021-08-31
CVE-2021-33555 Pepperl Fuchs WirelessHART-Gateway路径遍历漏洞 — WHA-GW-F2D2-0-AS- Z2-ETHCWE-22 7.5 High2021-08-31
CVE-2020-13639 Outsystems OutSystems Platform 跨站脚本漏洞 — n/a 6.1 -2021-08-31
CVE-2021-39175 Hedgedoc 跨站脚本漏洞 — hedgedocCWE-74 8.1 High2021-08-30
CVE-2021-33055 ZOHO ManageEngine ADSelfService Plus 操作系统命令注入漏洞 — n/a 9.8 -2021-08-30
CVE-2021-22025 VMware vRealize Operations 授权问题漏洞 — VMware vRealize Operations 7.5 -2021-08-30
CVE-2021-22026 VMware vRealize Operations 代码问题漏洞 — VMware vRealize Operations 7.5 -2021-08-30
CVE-2021-22027 VMware vRealize Operations 代码问题漏洞 — VMware vRealize Operations 7.5 -2021-08-30
CVE-2021-22024 VMware vRealize Operations 日志信息泄露漏洞 — VMware vRealize Operations 7.5 -2021-08-30
CVE-2021-38390 Delta Electronics DIAEnergie SQL注入漏洞 — Delta Electronics DIAEnergieCWE-89 9.8 -2021-08-30
CVE-2021-32983 Delta Electronics DIAEnergie SQL注入漏洞 — Delta Electronics DIAEnergieCWE-89 9.8 -2021-08-30
CVE-2021-38393 Delta Electronics DIAEnergie SQL注入漏洞 — Delta Electronics DIAEnergieCWE-89 9.8 -2021-08-30
CVE-2021-38391 Delta Electronics DIAEnergie SQL注入漏洞 — Delta Electronics DIAEnergieCWE-89 9.8 -2021-08-30
CVE-2021-26084 Atlassian Confluence Server 注入漏洞 — Confluence Server 9.8 -2021-08-30
CVE-2021-39165 Github Cachet SQL注入漏洞 — CachetCWE-287 8.1 High2021-08-26
CVE-2021-29487 October CMS 安全漏洞 — octoberCWE-287 7.4 High2021-08-26
CVE-2021-27944 Vizio P65-F1 命令注入漏洞 — n/a 9.8 -2021-08-26
CVE-2021-1591 Cisco Nexus 9500 Series Switches 安全漏洞 — Cisco NX-OS SoftwareCWE-284 5.8 Medium2021-08-25
CVE-2021-1590 Cisco NX-OS Software 安全漏洞 — Cisco NX-OS SoftwareCWE-787 5.3 Medium2021-08-25
CVE-2021-1588 Cisco NX-OS Software 缓冲区错误漏洞 — Cisco NX-OS SoftwareCWE-126 8.6 High2021-08-25
CVE-2021-1587 Cisco NX-OS Software 输入验证错误漏洞 — Cisco NX-OS SoftwareCWE-115 8.6 High2021-08-25
CVE-2021-1586 Cisco Nexus 9000 Series Fabric Switches 数据伪造问题漏洞 — Cisco NX-OS System Software in ACI ModeCWE-345 8.6 High2021-08-25
CVE-2021-1577 Cisco Application Policy Infrastructure Controller 安全漏洞 — Cisco Application Policy Infrastructure Controller (APIC)CWE-284 9.1 Critical2021-08-25

access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 19263 条 CVE 漏洞。