Vulnerabilities > Improper Authentication
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-06-07 | CVE-2023-33553 | Improper Authentication vulnerability in Planet Wdrt-1800Ax Firmware 1.01Cp21 An issue in Planet Technologies WDRT-1800AX v1.01-CP21 allows attackers to bypass authentication and escalate privileges to root via manipulation of the LoginStatus cookie. | 9.8 |
2023-06-06 | CVE-2023-32682 | Improper Authentication vulnerability in Matrix Synapse Synapse is a Matrix protocol homeserver written in Python with the Twisted framework. | 5.4 |
2023-06-06 | CVE-2022-40521 | Improper Authentication vulnerability in Qualcomm products Transient DOS due to improper authorization in Modem | 7.5 |
2023-06-06 | CVE-2022-40536 | Improper Authentication vulnerability in Qualcomm products Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network. | 7.5 |
2023-06-05 | CVE-2023-3065 | Improper Authentication vulnerability in Mobatime Amxgt 100 1.3.20 Improper Authentication vulnerability in Mobatime mobile application AMXGT100 allows Authentication Bypass.This issue affects Mobatime mobile application AMXGT100 through 1.3.20. | 9.1 |
2023-06-02 | CVE-2023-3069 | Improper Authentication vulnerability in Corebos Unverified Password Change in GitHub repository tsolucio/corebos prior to 8. | 9.8 |
2023-06-01 | CVE-2023-3028 | Improper Authentication vulnerability in Hopechart Hqt401 Firmware 201808021036 Insufficient authentication in the MQTT backend (broker) allows an attacker to access and even manipulate the telemetry data of the entire fleet of vehicles using the HopeChart HQT-401 telematics unit. | 9.8 |
2023-05-26 | CVE-2023-2283 | Improper Authentication vulnerability in multiple products A vulnerability was found in libssh, where the authentication check of the connecting client can be bypassed in the`pki_verify_data_signature` function in memory allocation problems. | 6.5 |
2023-05-26 | CVE-2023-0117 | Improper Authentication vulnerability in Huawei Emui 13.0.0 The online authentication provided by the hwKitAssistant lacks strict identity verification of applications. | 5.3 |
2023-05-23 | CVE-2023-25946 | Improper Authentication vulnerability in Qrio Q-Sl2 Firmware 2.0.9 Authentication bypass vulnerability in Qrio Lock (Q-SL2) firmware version 2.0.9 and earlier allows a network-adjacent attacker to analyze the product's communication data and conduct an arbitrary operation under certain conditions. | 8.8 |