access:pre-auth 类型相关 24777 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。
“access:pre-auth”标签标识了无需身份验证即可触发的漏洞,涵盖18971个CVE。此类漏洞之所以关键,是因为攻击者无需凭证即可直接利用,极大降低了攻击门槛并扩大了潜在受害面。典型场景包括远程代码执行、未授权数据访问及拒绝服务攻击,常见于配置错误的API接口、默认凭证服务或存在逻辑缺陷的认证前处理模块,对系统安全性构成直接且严重的威胁。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2024-4413 | WordPress plugin Hotel Booking Lite 安全漏洞 — MotoPress Hotel Booking CWE-502 | 9.8 | Critical | 2024-05-10 |
| CVE-2024-34199 | TinyWeb 安全漏洞 — n/a | 7.5 | - | 2024-05-10 |
| CVE-2024-34070 | Froxlor 安全漏洞 — Froxlor CWE-79 | 9.7 | Critical | 2024-05-10 |
| CVE-2024-4039 | WordPress plugin The Orders Tracking for WooCommerce 安全漏洞 — Orders Tracking for WooCommerce CWE-94 | 6.5 | Medium | 2024-05-10 |
| CVE-2024-4444 | WordPress plugin LearnPress 安全漏洞 — LearnPress – WordPress LMS Plugin for Create and Sell Online Courses CWE-420 | 5.3 | Medium | 2024-05-10 |
| CVE-2024-4434 | WordPress plugin LearnPress 安全漏洞 — LearnPress – WordPress LMS Plugin for Create and Sell Online Courses CWE-89 | 9.8 | Critical | 2024-05-10 |
| CVE-2024-3547 | WordPress plugin Unlimited Elements For Elementor 安全漏洞 — Unlimited Elements For Elementor CWE-79 | 6.1 | Medium | 2024-05-10 |
| CVE-2024-4280 | WordPress plugin White Label CMS 安全漏洞 — White Label CMS CWE-862 | 5.3 | Medium | 2024-05-10 |
| CVE-2024-4038 | WordPress plugin The Back In Stock Notifier for WooCommerce 安全漏洞 — Back In Stock Notifier for WooCommerce | WooCommerce Waitlist Pro CWE-94 | 6.5 | Medium | 2024-05-09 |
| CVE-2024-4104 | WordPress plugin ADFO 安全漏洞 — ADFO – Custom data in admin dashboard CWE-79 | 6.1 | Medium | 2024-05-09 |
| CVE-2024-4463 | WordPress plugin Squelch Tabs and Accordions Shortcodes 安全漏洞 — Squelch Tabs and Accordions Shortcodes CWE-352 | 4.3 | Medium | 2024-05-09 |
| CVE-2024-4082 | WordPress plugin Joli FAQ SEO 安全漏洞 — Joli FAQ SEO – WordPress FAQ Plugin CWE-352 | 4.3 | Medium | 2024-05-09 |
| CVE-2024-3070 | WordPress plugin Last Viewed Posts by WPBeginner 安全漏洞 — Last Viewed Posts by WPBeginner CWE-502 | 9.8 | Critical | 2024-05-09 |
| CVE-2024-3806 | WordPress theme Porto 安全漏洞 — Porto CWE-98 | 9.8 | Critical | 2024-05-09 |
| CVE-2024-1230 | WordPress Plugin SimpleShop 安全漏洞 — SimpleShop CWE-284 | 4.3 | Medium | 2024-05-09 |
| CVE-2024-4103 | WordPress plugin ADFO 安全漏洞 — ADFO – Custom data in admin dashboard CWE-352 | 4.3 | Medium | 2024-05-09 |
| CVE-2024-4441 | WordPress plugin XML Sitemap & Google News 安全漏洞 — XML Sitemap & Google News CWE-98 | 8.1 | High | 2024-05-09 |
| CVE-2024-3915 | WordPress plugin Swift Framework 安全漏洞 — Swift Framework CWE-862 | 5.3 | Medium | 2024-05-09 |
| CVE-2024-4314 | WordPress plugin Hostel 安全漏洞 — Hostel CWE-352 | 4.3 | Medium | 2024-05-09 |
| CVE-2024-4312 | WordPress plugin Soccer Engine 安全漏洞 — Soccer Engine – Soccer Plugin for WordPress CWE-352 | 4.3 | Medium | 2024-05-09 |
| CVE-2024-4041 | WordPress plugin Yoast SEO 安全漏洞 — Yoast SEO – Advanced SEO with real-time guidance and built-in AI CWE-79 | 6.1 | Medium | 2024-05-09 |
| CVE-2024-1229 | WordPress plugin SimpleShop 安全漏洞 — SimpleShop CWE-862 | 5.3 | Medium | 2024-05-09 |
| CVE-2023-6327 | WordPress plugin ShopLentor 安全漏洞 — ShopLentor – All-in-One WooCommerce Growth & Store Enhancement Plugin CWE-862 | 5.3 | Medium | 2024-05-09 |
| CVE-2024-4150 | WordPress plugin Simple Basic Contact Form 安全漏洞 — Simple Basic Contact Form CWE-79 | 6.1 | Medium | 2024-05-09 |
| CVE-2024-32739 | Cyber Power Systems PowerPanel Enterprise 安全漏洞 — CyberPower PowerPanel Enterprise | 7.5 | High | 2024-05-09 |
| CVE-2024-32738 | Cyber Power Systems PowerPanel Enterprise 安全漏洞 — CyberPower PowerPanel Enterprise | 7.5 | High | 2024-05-09 |
| CVE-2024-32737 | Cyber Power Systems PowerPanel Enterprise 安全漏洞 — CyberPower PowerPanel Enterprise | 7.5 | High | 2024-05-09 |
| CVE-2024-32736 | Cyber Power Systems PowerPanel Enterprise 安全漏洞 — CyberPower PowerPanel Enterprise | 7.5 | High | 2024-05-09 |
| CVE-2024-32735 | Cyber Power Systems PowerPanel Enterprise 安全漏洞 — CyberPower PowerPanel Enterprise | 9.8 | Critical | 2024-05-09 |
| CVE-2024-3016 | NEC Platforms DT900 Series 安全漏洞 — ITK-6DGS-1(BK) TEL CWE-912 | 6.5 | - | 2024-05-09 |
access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 24777 条 CVE 漏洞。