Vulnerabilities > Improper Authentication

DATE CVE VULNERABILITY TITLE RISK
2020-03-24 CVE-2020-10846 Improper Authentication vulnerability in Google Android 10.0/9.0
An issue was discovered on Samsung mobile devices with P(9.x) and Q(10.x) software.
local
low complexity
google CWE-287
5.5
2020-03-24 CVE-2019-20533 Improper Authentication vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) (released in China or India) software.
local
low complexity
google CWE-287
3.3
2020-03-23 CVE-2020-8863 Improper Authentication vulnerability in Dlink products
This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-867, DIR-878, and DIR-882 routers with firmware 1.10B04.
low complexity
dlink CWE-287
8.8
2020-03-20 CVE-2020-1878 Improper Authentication vulnerability in Huawei Oxfords-An00A Firmware
Huawei smartphone OxfordS-AN00A with versions earlier than 10.0.1.152D(C735E152R3P3),versions earlier than 10.0.1.160(C00E160R4P1) have an improper authentication vulnerability.
local
low complexity
huawei CWE-287
5.5
2020-03-20 CVE-2020-1864 Improper Authentication vulnerability in Huawei Secospace Antiddos8000 Firmware
Some Huawei products have a security vulnerability due to improper authentication.
network
high complexity
huawei CWE-287
8.1
2020-03-20 CVE-2020-1794 Improper Authentication vulnerability in Huawei Mate 20 Firmware and Mate 30 PRO Firmware
There is an improper authentication vulnerability in several smartphones.
low complexity
huawei CWE-287
4.6
2020-03-20 CVE-2020-1793 Improper Authentication vulnerability in Huawei Mate 20 Firmware and Mate 30 PRO Firmware
There is an improper authentication vulnerability in several smartphones.
low complexity
huawei CWE-287
4.6
2020-03-19 CVE-2020-10669 Improper Authentication vulnerability in Canon OCE Colorwave 500 Firmware 4.0.0.0
The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to authentication bypass on the page /home.jsp.
network
low complexity
canon CWE-287
7.5
2020-03-19 CVE-2020-4205 Improper Authentication vulnerability in IBM Datapower Gateway
IBM DataPower Gateway 2018.4.1.0 through 2018.4.1.8 could allow an authenticated user to bypass security restrictions, and continue to access the server even after authentication certificates have been revolked.
network
low complexity
ibm CWE-287
6.3
2020-03-16 CVE-2020-6988 Improper Authentication vulnerability in Rockwellautomation products
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions, RSLogix 500 Software v12.001 and prior, A remote, unauthenticated attacker can send a request from the RSLogix 500 software to the victim’s MicroLogix controller.
network
low complexity
rockwellautomation CWE-287
7.5