Vulnerabilities > Authentication Bypass by Spoofing

DATE CVE VULNERABILITY TITLE RISK
2019-12-16 CVE-2019-18259 Authentication Bypass by Spoofing vulnerability in Omron PLC CJ Firmware and PLC CS Firmware
In Omron PLC CJ series, all versions and Omron PLC CS series, all versions, an attacker could spoof arbitrary messages or execute commands.
network
low complexity
omron CWE-290
7.5
2019-11-25 CVE-2019-13715 Authentication Bypass by Spoofing vulnerability in multiple products
Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
network
low complexity
google opensuse CWE-290
4.3
2019-11-25 CVE-2019-13709 Authentication Bypass by Spoofing vulnerability in multiple products
Insufficient policy enforcement in downloads in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to bypass download restrictions via a crafted HTML page.
network
low complexity
google opensuse CWE-290
6.5
2019-11-25 CVE-2019-13708 Authentication Bypass by Spoofing vulnerability in multiple products
Inappropriate implementation in navigation in Google Chrome on iOS prior to 78.0.3904.70 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google opensuse CWE-290
4.3
2019-11-25 CVE-2019-13704 Authentication Bypass by Spoofing vulnerability in multiple products
Insufficient policy enforcement in navigation in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to bypass content security policy via a crafted HTML page.
network
low complexity
google opensuse CWE-290
4.3
2019-11-25 CVE-2019-13703 Authentication Bypass by Spoofing vulnerability in multiple products
Insufficient policy enforcement in the Omnibox in Google Chrome on Android prior to 78.0.3904.70 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google opensuse CWE-290
4.3
2019-11-25 CVE-2019-13701 Authentication Bypass by Spoofing vulnerability in multiple products
Incorrect implementation in navigation in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google opensuse CWE-290
4.3
2019-11-13 CVE-2019-0388 Authentication Bypass by Spoofing vulnerability in SAP UI
SAP UI5 HTTP Handler (corrected in SAP_UI versions 7.5, 7.51, 7.52, 7.53, 7.54 and SAP UI_700 version 2.0) allows an attacker to manipulate content due to insufficient URL validation.
network
low complexity
sap CWE-290
5.0
2019-11-12 CVE-2019-1234 Authentication Bypass by Spoofing vulnerability in Microsoft Azure Stack
A spoofing vulnerability exists when Azure Stack fails to validate certain requests, aka 'Azure Stack Spoofing Vulnerability'.
network
low complexity
microsoft CWE-290
5.0
2019-11-05 CVE-2013-5661 Authentication Bypass by Spoofing vulnerability in multiple products
Cache Poisoning issue exists in DNS Response Rate Limiting.
network
high complexity
isc nlnetlabs nic redhat CWE-290
2.6