Vulnerabilities > Improper Authentication

DATE CVE VULNERABILITY TITLE RISK
2020-06-04 CVE-2018-21235 Improper Authentication vulnerability in Foxitsoftware E-Mail Advertising System
An issue was discovered in Foxit E-mail advertising system before September 2018.
network
low complexity
foxitsoftware CWE-287
7.5
2020-06-03 CVE-2020-3216 Improper Authentication vulnerability in Cisco IOS XE Sd-Wan
A vulnerability in Cisco IOS XE SD-WAN Software could allow an unauthenticated, physical attacker to bypass authentication and gain unrestricted access to the root shell of an affected device.
low complexity
cisco CWE-287
6.8
2020-05-29 CVE-2020-1833 Improper Authentication vulnerability in Huawei Honor 9X Firmware
Honor 9X smartphones with versions earlier than 9.1.1.172(C00E170R8P1) have an improper authentication vulnerability.
low complexity
huawei CWE-287
2.4
2020-05-29 CVE-2020-1798 Improper Authentication vulnerability in Huawei P30 Firmware
HUAWEI P30 smartphones with versions earlier than 10.1.0.135(C00E135R2P11) have an improper authentication vulnerability.
low complexity
huawei CWE-287
4.6
2020-05-27 CVE-2020-8606 Improper Authentication vulnerability in Trendmicro Interscan web Security Virtual Appliance 6.5
A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 may allow remote attackers to bypass authentication on affected installations of Trend Micro InterScan Web Security Virtual Appliance.
network
low complexity
trendmicro CWE-287
critical
9.8
2020-05-22 CVE-2020-6091 Improper Authentication vulnerability in Epson Eb-1470Ui Firmware
An exploitable authentication bypass vulnerability exists in the ESPON Web Control functionality of Epson EB-1470Ui MAIN: 98009273ESWWV107 MAIN2: 8X7325WWV303.
network
low complexity
epson CWE-287
critical
9.1
2020-05-15 CVE-2020-9073 Improper Authentication vulnerability in Huawei P20 Firmware
Huawei P20 smartphones with versions earlier than 10.0.0.156(C00E156R1P4) have an improper authentication vulnerability.
low complexity
huawei CWE-287
2.4
2020-05-14 CVE-2020-12874 Improper Authentication vulnerability in Veritas Aptare
Veritas APTARE versions prior to 10.4 included code that bypassed the normal login process when specific authentication credentials were provided to the server.
network
low complexity
veritas CWE-287
critical
9.8
2020-05-13 CVE-2020-2018 Improper Authentication vulnerability in Paloaltonetworks Pan-Os
An authentication bypass vulnerability in the Panorama context switching feature allows an attacker with network access to a Panorama's management interface to gain privileged access to managed firewalls.
network
high complexity
paloaltonetworks CWE-287
critical
9.0
2020-05-12 CVE-2020-1718 Improper Authentication vulnerability in Redhat Keycloak
A flaw was found in the reset credential flow in all Keycloak versions before 8.0.0.
network
low complexity
redhat CWE-287
8.8