Vulnerabilities > Improper Authentication
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-09-19 | CVE-2023-4094 | Improper Authentication vulnerability in Fujitsu Arconte Aurea 1.5.0.0 ARCONTE Aurea's authentication system, in its 1.5.0.0 version, could allow an attacker to make incorrect access requests in order to block each legitimate account and cause a denial of service. | 8.2 |
2023-09-19 | CVE-2023-0773 | Improper Authentication vulnerability in Uniview Ipc322Lb-Sf28-A Firmware The vulnerability exists in Uniview IP Camera due to identification and authentication failure at its web-based management interface. | 9.8 |
2023-09-15 | CVE-2023-0813 | Improper Authentication vulnerability in Redhat Network Observability 1.0 A flaw was found in the Network Observability plugin for OpenShift console. | 7.5 |
2023-09-15 | CVE-2023-41900 | Improper Authentication vulnerability in multiple products Jetty is a Java based web server and servlet engine. | 4.3 |
2023-09-15 | CVE-2023-42442 | Improper Authentication vulnerability in Fit2Cloud Jumpserver JumpServer is an open source bastion host and a professional operation and maintenance security audit system. | 5.3 |
2023-09-15 | CVE-2022-47848 | Improper Authentication vulnerability in Bezeq Vtech Iad604-Il Firmware and Vtech Nb403-Il Firmware An issue was discovered in Bezeq Vtech NB403-IL version BZ_2.02.07.09.13.01 and Vtech IAD604-IL versions BZ_2.02.07.09.13.01, BZ_2.02.07.09.13T, and BZ_2.02.07.09.09T, allows remote attackers to gain sensitive information via rootDesc.xml page of the UPnP service. | 7.5 |
2023-09-14 | CVE-2023-4669 | Improper Authentication vulnerability in Exagate Sysguard 3001 Firmware Authentication Bypass by Assumed-Immutable Data vulnerability in Exagate SYSGuard 3001 allows Authentication Bypass.This issue affects SYSGuard 3001: before 3.2.20.0. | 9.8 |
2023-09-13 | CVE-2023-4568 | Improper Authentication vulnerability in Papercut NG PaperCut NG allows for unauthenticated XMLRPC commands to be run by default. | 6.5 |
2023-09-12 | CVE-2023-39215 | Improper Authentication vulnerability in Zoom Meeting Software Development KIT and Zoom Improper authentication in Zoom clients may allow an authenticated user to conduct a denial of service via network access. | 6.5 |
2023-09-12 | CVE-2023-4501 | Improper Authentication vulnerability in Microfocus products User authentication with username and password credentials is ineffective in OpenText (Micro Focus) Visual COBOL, COBOL Server, Enterprise Developer, and Enterprise Server (including product variants such as Enterprise Test Server), versions 7.0 patch updates 19 and 20, 8.0 patch updates 8 and 9, and 9.0 patch update 1, when LDAP-based authentication is used with certain configurations. | 9.8 |