Vulnerabilities > Improper Authentication

DATE CVE VULNERABILITY TITLE RISK
2019-12-18 CVE-2019-8634 Improper Authentication vulnerability in Apple mac OS X
An authentication issue was addressed with improved state management.
network
low complexity
apple CWE-287
8.8
2019-12-18 CVE-2019-8533 Improper Authentication vulnerability in Apple mac OS X
A lock handling issue was addressed with improved lock handling.
local
low complexity
apple CWE-287
7.8
2019-12-15 CVE-2014-8650 Improper Authentication vulnerability in multiple products
python-requests-Kerberos through 0.5 does not handle mutual authentication
network
low complexity
requests-kerberos-project debian CWE-287
critical
9.8
2019-12-14 CVE-2019-5252 Improper Authentication vulnerability in Huawei products
There is an improper authentication vulnerability in Huawei smartphones (Y9, Honor 8X, Honor 9 Lite, Honor 9i, Y6 Pro).
low complexity
huawei CWE-287
3.5
2019-12-13 CVE-2019-5253 Improper Authentication vulnerability in Huawei E5572-855 Firmware
E5572-855 with versions earlier than 8.0.1.3(H335SP1C233) has an improper authentication vulnerability.
network
high complexity
huawei CWE-287
5.9
2019-12-13 CVE-2014-1867 Improper Authentication vulnerability in Suphp
suPHP before 0.7.2 source-highlighting feature allows security bypass which could lead to arbitrary code execution
local
low complexity
suphp CWE-287
7.8
2019-12-12 CVE-2019-5061 Improper Authentication vulnerability in W1.Fi Hostapd 2.6
An exploitable denial-of-service vulnerability exists in the hostapd 2.6, where an attacker could trigger AP to send IAPP location updates for stations, before the required authentication process has completed.
low complexity
w1-fi CWE-287
6.5
2019-12-12 CVE-2019-18332 Improper Authentication vulnerability in Siemens Sppa-T3000 Application Server R8.2
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2).
network
low complexity
siemens CWE-287
5.3
2019-12-12 CVE-2019-18322 Improper Authentication vulnerability in Siemens Sppa-T3000 Ms3000 Migration Server
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions).
network
low complexity
siemens CWE-287
critical
9.1
2019-12-12 CVE-2019-18321 Improper Authentication vulnerability in Siemens Sppa-T3000 Ms3000 Migration Server
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions).
network
low complexity
siemens CWE-287
critical
9.1