目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

access:pre-auth 标签下的 CVE 漏洞 24627

access:pre-auth 类型相关 24627 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。

“access:pre-auth”标签标识了无需身份验证即可触发的漏洞,涵盖18971个CVE。此类漏洞之所以关键,是因为攻击者无需凭证即可直接利用,极大降低了攻击门槛并扩大了潜在受害面。典型场景包括远程代码执行、未授权数据访问及拒绝服务攻击,常见于配置错误的API接口、默认凭证服务或存在逻辑缺陷的认证前处理模块,对系统安全性构成直接且严重的威胁。

CVE ID 标题 CVSS 风险等级 Published
CVE-2021-41609 ClassApps SelectSurvey.NET SQL注入漏洞 — n/a 9.8 - 2022-01-28
CVE-2016-3735 Piwigo 安全漏洞 — Piwigo CWE-335 8.1 - 2022-01-28
CVE-2021-44692 BuddyBoss Platform 信息泄露漏洞 — n/a 5.3 - 2022-01-26
CVE-2021-41766 Apache Karaf 代码问题漏洞 — Apache Karaf 8.1 - 2022-01-26
CVE-2022-23968 Xerox VersaLink 安全漏洞 — n/a 7.5 - 2022-01-26
CVE-2021-36346 Dell EMC iDRAC 安全漏洞 — Integrated Dell Remote Access Controller (iDRAC) CWE-287 5.3 - 2022-01-25
CVE-2021-36294 Dell Vnx2 Oe For File 安全特征问题漏洞 — VNX Control Station CWE-331 9.8 Critical 2022-01-25
CVE-2021-43298 Embedthis Software GoAhead 安全漏洞 — goahead CWE-208 9.1 - 2022-01-25
CVE-2022-23944 Apache ShenYu 访问控制错误漏洞 — Apache ShenYu (incubating) CWE-862 9.1 - 2022-01-25
CVE-2021-43588 Dell Emc Data Protection Central 输入验证错误漏洞 — Data Protection Central CWE-20 4.3 Medium 2022-01-24
CVE-2020-17383 Telos Alliance Telos Z/Ip One 路径遍历漏洞 — n/a 9.8 - 2022-01-24
CVE-2021-25080 WordPress plugin 跨站脚本漏洞 — Contact Form Entries – Contact Form 7, WPforms and more CWE-79 6.1 - 2022-01-24
CVE-2021-25078 WordPress plugin 跨站脚本漏洞 — Affiliates Manager CWE-79 6.1 - 2022-01-24
CVE-2021-24906 WordPress plugin 访问控制错误漏洞 — Protect WP Admin CWE-862 7.5 - 2022-01-24
CVE-2022-23855 Saviynt Enterprise Identity Cloud 授权问题漏洞 — n/a 9.8 - 2022-01-24
CVE-2021-46024 online-shopping-webvsite-in-php SQL注入漏洞 — n/a 9.8 - 2022-01-23
CVE-2022-22553 DELL EMC AppSync 安全漏洞 — AppSync CWE-307 8.1 High 2022-01-21
CVE-2022-22552 DELL EMC AppSync 安全漏洞 — AppSync CWE-1021 6.9 Medium 2022-01-21
CVE-2022-22551 DELL EMC AppSync 授权问题漏洞 — AppSync CWE-598 8.3 High 2022-01-21
CVE-2021-43355 Fresenius Kabi Agilia Connect Infusion System 授权问题漏洞 — Vigilant Software Suite (Mastermed Dashboard) CWE-603 7.3 High 2022-01-21
CVE-2021-33843 Fresenius Kabi Agilia Connect Infusion System 访问控制错误漏洞 — Agilia Connect WiFi CWE-552 5.3 Medium 2022-01-21
CVE-2021-23233 Fresenius Kabi Agilia Connect Infusion System 信任管理问题漏洞 — Agilia Link+ CWE-284 7.3 High 2022-01-21
CVE-2022-23128 Mitsubishi Electric MC Works64 安全漏洞 — Mitsubishi Electric MC Works64; ICONICS GENESIS64; ICONICS Hyper Historian; ICONICS AnalytiX; ICONICS MobileHMI 9.8 - 2022-01-21
CVE-2022-23127 Mitsubishi Electric MC Works64 跨站脚本漏洞 — Mitsubishi Electric MC Works64; ICONICS MobileHMI 6.1 - 2022-01-21
CVE-2021-44593 Sourcecodester Simple College Website SQL注入漏洞 — n/a 9.8 - 2022-01-21
CVE-2021-44736 Lexmark 授权问题漏洞 — n/a 9.1 - 2022-01-20
CVE-2021-26247 Cacti 跨站脚本漏洞 — Cacti CWE-79 6.1 - 2022-01-19
CVE-2022-21390 Oracle Communications Applications 输入验证错误漏洞 — Communications Billing and Revenue Management 10.0 Critical 2022-01-19
CVE-2022-21389 Oracle Communications Applications 输入验证错误漏洞 — Communications Billing and Revenue Management 10.0 Critical 2022-01-19
CVE-2022-21387 Oracle Commerce 输入验证错误漏洞 — Commerce Platform 5.3 Medium 2022-01-19

access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 24627 条 CVE 漏洞。