Vulnerabilities > Improper Authentication

DATE CVE VULNERABILITY TITLE RISK
2022-08-28 CVE-2022-38556 Improper Authentication vulnerability in Trendnet Tew733Gr Firmware 1.03B01
Trendnet TEW733GR v1.03B01 contains a Static Default Credential vulnerability in /etc/init0.d/S80telnetd.sh.
network
low complexity
trendnet CWE-287
critical
9.8
2022-08-28 CVE-2022-38557 Improper Authentication vulnerability in Dlink Dir-845L Firmware
D-Link DIR845L v1.00-v1.03 contains a Static Default Credential vulnerability in /etc/init0.d/S80telnetd.sh.
network
low complexity
dlink CWE-287
critical
9.8
2022-08-26 CVE-2021-3632 Improper Authentication vulnerability in Redhat Keycloak and Single Sign-On
A flaw was found in Keycloak.
network
high complexity
redhat CWE-287
7.5
2022-08-25 CVE-2021-3979 Improper Authentication vulnerability in multiple products
A key length flaw was found in Red Hat Ceph Storage.
network
low complexity
redhat fedoraproject CWE-287
6.5
2022-08-25 CVE-2022-2031 Improper Authentication vulnerability in Samba
A flaw was found in Samba.
network
low complexity
samba CWE-287
8.8
2022-08-23 CVE-2021-3827 Improper Authentication vulnerability in Redhat Keycloak and Single Sign-On
A flaw was found in keycloak, where the default ECP binding flow allows other authentication flows to be bypassed.
network
high complexity
redhat CWE-287
6.8
2022-08-23 CVE-2022-35726 Improper Authentication vulnerability in Yotuwp Video Gallery
Broken Authentication vulnerability in yotuwp Video Gallery plugin <= 1.3.4.5 at WordPress.
network
low complexity
yotuwp CWE-287
critical
9.8
2022-08-23 CVE-2022-35203 Improper Authentication vulnerability in Trendnet Tv-Ip572Pi Firmware 1.0
An access control issue in TrendNet TV-IP572PI v1.0 allows unauthenticated attackers to access sensitive system information.
network
low complexity
trendnet CWE-287
7.2
2022-08-23 CVE-2022-34919 Improper Authentication vulnerability in Zengenti Contensis
The file upload wizard in Zengenti Contensis Classic before 15.2.1.79 does not correctly check that a user has authenticated.
network
low complexity
zengenti CWE-287
critical
9.8
2022-08-22 CVE-2022-32282 Improper Authentication vulnerability in Wwbn Avideo 11.6
An improper password check exists in the login functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364.
network
low complexity
wwbn CWE-287
8.8