Vulnerabilities > Authentication Bypass by Capture-replay

DATE CVE VULNERABILITY TITLE RISK
2022-07-14 CVE-2022-29593 Authentication Bypass by Capture-replay vulnerability in Dingtian-Tech Dt-R004 Firmware 3.1.276A
relay_cgi.cgi on Dingtian DT-R002 2CH relay devices with firmware 3.1.276A allows an attacker to replay HTTP post requests without the need for authentication or a valid signed/authorized request.
network
high complexity
dingtian-tech CWE-294
5.9
2022-07-04 CVE-2022-33208 Authentication Bypass by Capture-replay vulnerability in Omron products
Authentication bypass by capture-replay vulnerability exists in Machine automation controller NJ series all models V 1.48 and earlier, Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, Automation software 'Sysmac Studio' all models V1.49 and earlier, and Programmable Terminal (PT) NA series NA5-15W/NA5-12W/NA5-9W/NA5-7W models Runtime V1.15 and earlier, which may allow a remote attacker who can analyze the communication between the affected controller and automation software 'Sysmac Studio' and/or a Programmable Terminal (PT) to access the controller.
network
high complexity
omron CWE-294
8.1
2022-07-04 CVE-2022-33971 Authentication Bypass by Capture-replay vulnerability in Omron products
Authentication bypass by capture-replay vulnerability exists in Machine automation controller NX7 series all models V1.28 and earlier, Machine automation controller NX1 series all models V1.48 and earlier, and Machine automation controller NJ series all models V 1.48 and earlier, which may allow an adjacent attacker who can analyze the communication between the controller and the specific software used by OMRON internally to cause a denial-of-service (DoS) condition or execute a malicious program.
high complexity
omron CWE-294
7.5
2022-06-29 CVE-2022-30467 Authentication Bypass by Capture-replay vulnerability in Joyebike Wolf 2022 Firmware
Joy ebike Wolf Manufacturing year 2022 is vulnerable to Denial of service, which allows remote attackers to jam the key fob request via RF.
high complexity
joyebike CWE-294
6.8
2022-06-16 CVE-2022-31277 Authentication Bypass by Capture-replay vulnerability in MI Xiaomi Lamp 1 Firmware 2.0.40066
Xiaomi Lamp 1 v2.0.4_0066 was discovered to be vulnerable to replay attacks.
low complexity
mi CWE-294
8.8
2022-06-07 CVE-2022-30466 Authentication Bypass by Capture-replay vulnerability in Joybike Wolf Firmware 2022
joyebike Joy ebike Wolf Manufacturing year 2022 is vulnerable to Authentication Bypass by Capture-replay.
low complexity
joybike CWE-294
6.5
2022-05-26 CVE-2022-31265 Authentication Bypass by Capture-replay vulnerability in Wargaming World of Warships 0.11.4
The replay feature in the client in Wargaming World of Warships 0.11.4 allows remote attackers to execute code when a user launches a replay from an untrusted source.
network
low complexity
wargaming CWE-294
8.8
2022-05-24 CVE-2022-29334 Authentication Bypass by Capture-replay vulnerability in H Project H 1.0
An issue in H v1.0 allows attackers to bypass authentication via a session replay attack.
network
low complexity
h-project CWE-294
critical
9.8
2022-05-20 CVE-2022-29878 Authentication Bypass by Capture-replay vulnerability in Siemens products
A vulnerability has been identified in SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00).
network
high complexity
siemens CWE-294
8.1
2022-04-07 CVE-2020-27374 Authentication Bypass by Capture-replay vulnerability in Drtrustusa Icheck Connect BP Monitor BP Testing 118 Firmware 1.2.1
Dr Trust USA iCheck Connect BP Monitor BP Testing 118 1.2.1 is vulnerable to a Replay Attack to BP Monitoring.
high complexity
drtrustusa CWE-294
7.5