Vulnerabilities > Improper Authentication

DATE CVE VULNERABILITY TITLE RISK
2023-01-17 CVE-2023-22303 Improper Authentication vulnerability in Tp-Link Tl-Sg105Pe Firmware 1.0.0
TP-Link SG105PE firmware prior to 'TL-SG105PE(UN) 1.0_1.0.0 Build 20221208' contains an authentication bypass vulnerability.
network
low complexity
tp-link CWE-287
critical
9.8
2023-01-15 CVE-2023-0311 Improper Authentication vulnerability in PHPmyfaq
Improper Authentication in GitHub repository thorsten/phpmyfaq prior to 3.1.10.
network
low complexity
phpmyfaq CWE-287
critical
9.8
2023-01-13 CVE-2023-0105 Improper Authentication vulnerability in Redhat Keycloak
A flaw was found in Keycloak.
network
low complexity
redhat CWE-287
6.5
2023-01-11 CVE-2022-4874 Improper Authentication vulnerability in Netcommwireless Nf20 Firmware, Nf20Mesh Firmware and Nl1902 Firmware
Authentication bypass in Netcomm router models NF20MESH, NF20, and NL1902 allows an unauthenticated user to access content.
network
low complexity
netcommwireless CWE-287
7.5
2023-01-10 CVE-2022-35401 Improper Authentication vulnerability in Asus Rt-Ax82U Firmware 3.0.0.4.38649674Ge182230
An authentication bypass vulnerability exists in the get_IFTTTTtoken.cgi functionality of Asus RT-AX82U 3.0.0.4.386_49674-ge182230.
network
high complexity
asus CWE-287
8.1
2023-01-07 CVE-2022-1101 Improper Authentication vulnerability in Event Management System Project Event Management System 1.0
A vulnerability was found in SourceCodester Royale Event Management System 1.0.
network
low complexity
event-management-system-project CWE-287
critical
9.8
2023-01-07 CVE-2014-125060 Improper Authentication vulnerability in Collabcal Project Collabcal
A vulnerability, which was classified as critical, was found in holdennb CollabCal.
network
low complexity
collabcal-project CWE-287
critical
9.8
2023-01-05 CVE-2021-40342 Improper Authentication vulnerability in Hitachienergy Foxman-Un and Unem
In the DES implementation, the affected product versions use a default key for encryption.
network
low complexity
hitachienergy CWE-287
critical
9.8
2023-01-03 CVE-2022-39042 Improper Authentication vulnerability in Aenrich A+Hrd 6.8/7.0
aEnrich a+HRD has improper validation for login function.
network
low complexity
aenrich CWE-287
critical
9.8
2022-12-31 CVE-2022-48195 Improper Authentication vulnerability in Mellium Sasl 0.3.0
An issue was discovered in Mellium mellium.im/sasl before 0.3.1.
network
low complexity
mellium CWE-287
critical
9.8