Vulnerabilities > Authentication Bypass by Spoofing

DATE CVE VULNERABILITY TITLE RISK
2022-09-20 CVE-2022-35957 Authentication Bypass by Spoofing vulnerability in multiple products
Grafana is an open-source platform for monitoring and observability.
network
high complexity
grafana fedoraproject CWE-290
6.6
2022-09-16 CVE-2022-37709 Authentication Bypass by Spoofing vulnerability in Tesla Model 3 Firmware and Tesla
Tesla Model 3 V11.0(2022.4.5.1 6b701552d7a6) Tesla mobile app v4.23 is vulnerable to Authentication Bypass by spoofing.
high complexity
tesla CWE-290
5.3
2022-09-07 CVE-2022-31149 Authentication Bypass by Spoofing vulnerability in Activitywatch
ActivityWatch open-source automated time tracker.
network
low complexity
activitywatch CWE-290
critical
9.6
2022-08-25 CVE-2022-32744 Authentication Bypass by Spoofing vulnerability in Samba
A flaw was found in Samba.
network
low complexity
samba CWE-290
8.8
2022-08-15 CVE-2022-33991 Authentication Bypass by Spoofing vulnerability in Dproxy-Nexgen Project Dproxy-Nexgen
dproxy-nexgen (aka dproxy nexgen) forwards and caches DNS queries with the CD (aka checking disabled) bit set to 1.
network
low complexity
dproxy-nexgen-project CWE-290
5.3
2022-07-29 CVE-2022-2324 Authentication Bypass by Spoofing vulnerability in Sonicwall Email Security 10.0.9
Improperly Implemented Security Check vulnerability in the SonicWall Hosted Email Security leads to bypass of Capture ATP security service in the appliance.
network
low complexity
sonicwall CWE-290
7.5
2022-07-29 CVE-2022-35629 Authentication Bypass by Spoofing vulnerability in Rapid7 Velociraptor
Due to a bug in the handling of the communication between the client and server, it was possible for one client, already registered with their own client ID, to send messages to the server claiming to come from another client ID.
network
low complexity
rapid7 CWE-290
5.4
2022-07-28 CVE-2022-30319 Authentication Bypass by Spoofing vulnerability in Honeywell Saia PG5 Controls Suite
Saia Burgess Controls (SBC) PCD through 2022-05-06 allows Authentication bypass.
low complexity
honeywell CWE-290
8.1
2022-07-27 CVE-2022-2310 Authentication Bypass by Spoofing vulnerability in Skyhighsecurity Secure web Gateway 10.0.0/11.0.0
An authentication bypass vulnerability in Skyhigh SWG in main releases 10.x prior to 10.2.12, 9.x prior to 9.2.23, 8.x prior to 8.2.28, and controlled release 11.x prior to 11.2.1 allows a remote attacker to bypass authentication into the administration User Interface.
network
low complexity
skyhighsecurity CWE-290
critical
9.8
2022-07-26 CVE-2022-1495 Authentication Bypass by Spoofing vulnerability in Google Chrome
Incorrect security UI in Downloads in Google Chrome on Android prior to 101.0.4951.41 allowed a remote attacker to spoof the APK downloads dialog via a crafted HTML page.
network
low complexity
google CWE-290
4.3