Vulnerabilities > Authentication Bypass by Spoofing

DATE CVE VULNERABILITY TITLE RISK
2022-07-27 CVE-2022-2310 Authentication Bypass by Spoofing vulnerability in Skyhighsecurity Secure web Gateway 10.0.0/11.0.0
An authentication bypass vulnerability in Skyhigh SWG in main releases 10.x prior to 10.2.12, 9.x prior to 9.2.23, 8.x prior to 8.2.28, and controlled release 11.x prior to 11.2.1 allows a remote attacker to bypass authentication into the administration User Interface.
network
low complexity
skyhighsecurity CWE-290
critical
9.8
2022-07-26 CVE-2022-1495 Authentication Bypass by Spoofing vulnerability in Google Chrome
Incorrect security UI in Downloads in Google Chrome on Android prior to 101.0.4951.41 allowed a remote attacker to spoof the APK downloads dialog via a crafted HTML page.
network
low complexity
google CWE-290
4.3
2022-07-25 CVE-2022-1306 Authentication Bypass by Spoofing vulnerability in Google Chrome
Inappropriate implementation in compositing in Google Chrome prior to 100.0.4896.88 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google CWE-290
4.3
2022-07-25 CVE-2022-1307 Authentication Bypass by Spoofing vulnerability in Google Chrome
Inappropriate implementation in full screen in Google Chrome on Android prior to 100.0.4896.88 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google CWE-290
4.3
2022-07-23 CVE-2022-1129 Authentication Bypass by Spoofing vulnerability in Google Chrome
Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 100.0.4896.60 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
network
low complexity
google CWE-290
6.5
2022-07-08 CVE-2022-22476 Authentication Bypass by Spoofing vulnerability in IBM Open Liberty and Websphere Application Server
IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.7 and Open Liberty are vulnerable to identity spoofing by an authenticated user using a specially crafted request.
network
low complexity
ibm CWE-290
8.8
2022-06-20 CVE-2022-32983 Authentication Bypass by Spoofing vulnerability in NIC Knot Resolver
Knot Resolver through 5.5.1 may allow DNS cache poisoning when there is an attempt to limit forwarding actions by filters.
network
low complexity
nic CWE-290
5.3
2022-05-20 CVE-2022-29165 Authentication Bypass by Spoofing vulnerability in Argoproj Argo CD
Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes.
network
low complexity
argoproj CWE-290
critical
10.0
2022-05-05 CVE-2022-25989 Authentication Bypass by Spoofing vulnerability in Anker Eufy Homebase 2 Firmware 2.1.8.5H
An authentication bypass vulnerability exists in the libxm_av.so getpeermac() functionality of Anker Eufy Homebase 2 2.1.8.5h.
low complexity
anker CWE-290
8.8
2022-03-06 CVE-2022-26505 Authentication Bypass by Spoofing vulnerability in multiple products
A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files.
network
low complexity
readymedia-project debian CWE-290
7.4