access:pre-auth 类型相关 24771 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。
“access:pre-auth”标签标识了无需身份验证即可触发的漏洞,涵盖18971个CVE。此类漏洞之所以关键,是因为攻击者无需凭证即可直接利用,极大降低了攻击门槛并扩大了潜在受害面。典型场景包括远程代码执行、未授权数据访问及拒绝服务攻击,常见于配置错误的API接口、默认凭证服务或存在逻辑缺陷的认证前处理模块,对系统安全性构成直接且严重的威胁。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2024-1389 | WordPress Plugin Paid Membership Subscriptions 安全漏洞 — Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction CWE-862 | 5.3 | Medium | 2024-02-20 |
| CVE-2024-1336 | WordPress Plugin ImageRecycle pdf & image compression 安全漏洞 — ImageRecycle pdf & image compression CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-0590 | WordPress Plugin Microsoft Clarity 安全漏洞 — Microsoft Clarity CWE-352 | 6.1 | Medium | 2024-02-20 |
| CVE-2024-0512 | WordPress Plugin Royal Elementor Addons and Templates 安全漏洞 — Royal Addons for Elementor – Addons and Templates Kit for Elementor CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-1335 | WordPress Plugin ImageRecycle pdf & image compression 安全漏洞 — ImageRecycle pdf & image compression CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-0514 | WordPress Plugin Royal Elementor Addons and Templates 安全漏洞 — Royal Addons for Elementor – Addons and Templates Kit for Elementor CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-1322 | WordPress Plugin Directorist 安全漏洞 — Directorist: AI-Powered Business Directory, Listings & Classified Ads CWE-862 | 5.3 | Medium | 2024-02-20 |
| CVE-2024-0515 | WordPress Plugin Royal Elementor Addons and Templates plugin for WordPress 安全漏洞 — Royal Addons for Elementor – Addons and Templates Kit for Elementor CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-0978 | WordPress Plugin My Private Site plugin for WordPress 安全漏洞 — My Private Site CWE-284 | 5.3 | Medium | 2024-02-20 |
| CVE-2024-1472 | WordPress Plugin WP Maintenance 安全漏洞 — WP Maintenance CWE-284 | 5.3 | Medium | 2024-02-20 |
| CVE-2024-1338 | WordPress Plugin ImageRecycle pdf & image compression 安全漏洞 — ImageRecycle pdf & image compression CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-1519 | WordPress Plugin Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content 安全漏洞 — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress CWE-79 | 6.5 | Medium | 2024-02-20 |
| CVE-2024-1492 | WordPress Plugin WPify Woo Czech 安全漏洞 — WPify Woo Czech CWE-284 | 5.3 | Medium | 2024-02-20 |
| CVE-2024-1475 | WordPress Plugin Coming Soon Maintenance Mode 安全漏洞 — Coming Soon Maintenance Mode CWE-284 | 5.3 | Medium | 2024-02-20 |
| CVE-2024-1044 | WordPress Plugin Customer Reviews for WooCommerce 安全漏洞 — Customer Reviews for WooCommerce CWE-284 | 5.3 | Medium | 2024-02-20 |
| CVE-2024-0513 | WordPress Plugin Royal Elementor Addons and Templates plugin for WordPress 安全漏洞 — Royal Addons for Elementor – Addons and Templates Kit for Elementor CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-0620 | WordPress Plugin PPWP 安全漏洞 — PPWP – Password Protect Pages CWE-200 | 5.3 | Medium | 2024-02-20 |
| CVE-2023-6565 | WordPress Plugin InfiniteWP Client plugin for WordPress 安全漏洞 — InfiniteWP Client CWE-922 | 5.9 | Medium | 2024-02-20 |
| CVE-2023-6923 | WordPress Plugin Matomo Analytics 安全漏洞 — Matomo Analytics – Powerful, Privacy-First Insights for WordPress CWE-79 | 6.1 | Medium | 2024-02-20 |
| CVE-2024-0379 | WordPress Plugin Custom Twitter Feeds 安全漏洞 — Custom Twitter Feeds – A Tweets Widget or X Feed Widget CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-1339 | WordPress Plugin ImageRecycle pdf & image compression 安全漏洞 — ImageRecycle pdf & image compression CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2024-0616 | WordPress Plugin Passster 安全漏洞 — Passster – Password Protect Pages and Content CWE-200 | 5.3 | Medium | 2024-02-20 |
| CVE-2024-1334 | WordPress Plugin ImageRecycle pdf & image compression 安全漏洞 — ImageRecycle pdf & image compression CWE-352 | 4.3 | Medium | 2024-02-20 |
| CVE-2023-38562 | Weston Embedded uC-TCP-IP 资源管理错误漏洞 — uC-TCP-IP CWE-415 | 8.7 | High | 2024-02-20 |
| CVE-2024-1559 | WordPress Plugin Link Library 安全漏洞 — Link Library CWE-79 | 6.5 | Medium | 2024-02-20 |
| CVE-2024-25626 | Yocto Project poky 操作系统命令注入漏洞 — poky CWE-78 | 8.8 | High | 2024-02-19 |
| CVE-2024-0610 | WordPress Plugin Piraeus Bank WooCommerce Payment Gateway 安全漏洞 — Piraeus Bank WooCommerce Payment Gateway CWE-89 | 9.8 | Critical | 2024-02-17 |
| CVE-2024-1512 | WordPress Plugin MasterStudy LMS WordPress Plugin 安全漏洞 — MasterStudy LMS WordPress Plugin – for Online Courses and Education CWE-89 | 9.8 | Critical | 2024-02-17 |
| CVE-2024-20986 | Oracle Fusion Middleware 安全漏洞 — WebLogic Server | 6.1 | Medium | 2024-02-17 |
| CVE-2024-20951 | Oracle E-Business Suite 安全漏洞 — Customer Interaction History | 6.1 | Medium | 2024-02-17 |
access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 24771 条 CVE 漏洞。