Vulnerabilities > Improper Authentication

DATE CVE VULNERABILITY TITLE RISK
2021-11-08 CVE-2021-31602 Improper Authentication vulnerability in Hitachi products
An issue was discovered in Hitachi Vantara Pentaho through 9.1 and Pentaho Business Intelligence Server through 7.x.
network
low complexity
hitachi CWE-287
7.5
2021-11-08 CVE-2021-42072 Improper Authentication vulnerability in multiple products
An issue was discovered in Barrier before 2.4.0.
network
low complexity
barrier-project fedoraproject CWE-287
8.8
2021-11-07 CVE-2021-43414 Improper Authentication vulnerability in GNU Hurd
An issue was discovered in GNU Hurd before 0.9 20210404-9.
local
high complexity
gnu CWE-287
7.0
2021-11-05 CVE-2021-42837 Improper Authentication vulnerability in Talend Data Catalog
An issue was discovered in Talend Data Catalog before 7.3-20210930.
network
low complexity
talend CWE-287
critical
9.8
2021-11-05 CVE-2021-25505 Improper Authentication vulnerability in Samsung Pass
Improper authentication in Samsung Pass prior to 3.0.02.4 allows to use app without authentication when lockscreen is unlocked.
local
low complexity
samsung CWE-287
7.8
2021-11-03 CVE-2021-38161 Improper Authentication vulnerability in multiple products
Improper Authentication vulnerability in TLS origin verification of Apache Traffic Server allows for man in the middle attacks.
network
high complexity
apache debian CWE-287
8.1
2021-11-03 CVE-2021-33210 Improper Authentication vulnerability in Fimer Aurora Vision
An issue was discovered in Fimer Aurora Vision before 2.97.10.
network
low complexity
fimer CWE-287
4.3
2021-11-03 CVE-2021-41312 Improper Authentication vulnerability in Atlassian Jira
Affected versions of Atlassian Jira Server and Data Center allow a remote attacker who has had their access revoked from Jira Service Management to enable and disable Issue Collectors on Jira Service Management projects via an Improper Authentication vulnerability in the /secure/ViewCollectors endpoint.
network
low complexity
atlassian CWE-287
7.5
2021-10-28 CVE-2021-22473 Improper Authentication vulnerability in Huawei Emui and Magic UI
There is an Authentication vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect service confidentiality.
network
low complexity
huawei CWE-287
7.5
2021-10-28 CVE-2021-22490 Improper Authentication vulnerability in Huawei Emui and Magic UI
There is a Permission verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affect the device performance.
network
low complexity
huawei CWE-287
5.3