Vulnerabilities > Improper Authentication

DATE CVE VULNERABILITY TITLE RISK
2022-03-11 CVE-2022-22729 Improper Authentication vulnerability in Yokogawa products
CAMS for HIS Server contained in the following Yokogawa Electric products improperly authenticate the receiving packets.
network
low complexity
yokogawa CWE-287
8.8
2022-03-10 CVE-2022-25816 Improper Authentication vulnerability in Google Android 10.0/11.0/12.0
Improper authentication in Samsung Lock and mask apps setting prior to SMR Mar-2022 Release 1 allows attacker to change enable/disable without authentication
low complexity
google CWE-287
4.6
2022-03-10 CVE-2022-25825 Improper Authentication vulnerability in Samasung Account
Improper access control vulnerability in Samsung Account prior to version 13.1.0.1 allows attackers to access to the authcode for sign-in.
local
low complexity
samasung CWE-287
5.5
2022-03-10 CVE-2022-24285 Improper Authentication vulnerability in Acer Care Center 4.00.3000/4.00.3038
Acer Care Center 4.00.30xx before 4.00.3042 contains a local privilege escalation vulnerability.
local
low complexity
acer CWE-287
7.8
2022-03-10 CVE-2022-24286 Improper Authentication vulnerability in Acer Quickaccess
Acer QuickAccess 2.01.300x before 2.01.3030 and 3.00.30xx before 3.00.3038 contains a local privilege escalation vulnerability.
local
low complexity
acer CWE-287
7.8
2022-03-10 CVE-2022-23383 Improper Authentication vulnerability in Yzmcms 6.3
YzmCMS v6.3 is affected by broken access control.
network
low complexity
yzmcms CWE-287
critical
9.1
2022-03-10 CVE-2021-40376 Improper Authentication vulnerability in Otris Update Manager 1.2.1.0
otris Update Manager 1.2.1.0 allows local users to achieve SYSTEM access via unauthenticated calls to exposed interfaces over a .NET named pipe.
local
low complexity
otris CWE-287
7.8
2022-03-08 CVE-2021-41181 Improper Authentication vulnerability in Nextcloud Talk
Nextcloud talk is a self hosting messaging service.
low complexity
nextcloud CWE-287
2.4
2022-03-07 CVE-2022-24738 Improper Authentication vulnerability in Evmos
Evmos is the Ethereum Virtual Machine (EVM) Hub on the Cosmos Network.
network
high complexity
evmos CWE-287
7.4
2022-03-04 CVE-2022-23729 Improper Authentication vulnerability in Google Android
When the device is in factory state, it can be access the shell without adb authentication process.
local
low complexity
google CWE-287
7.8