When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
4,376 vulnerabilities with CWE-287
CVE-2011-4514
Siemens WinCC flexible 2004-2008 - Unauthenticated Remote Access via TELNET Daemon
CVE-2011-4508
Siemens WinCC flexible - Improper Authentication via Predictable Cookie Token
CVE-2011-3463
Apple Mac OS X 10.7.x <10.7.3 - Privilege Escalation
CVE-2011-3478
Symantec pcAnywhere 12.5.x-12.5.3 & IT Management Suite 7.0-7.1 - RCE via TCP Port 5631
CVE-2011-5063
Apache Tomcat 5.5.x < 5.5.34, 6.x < 6.0.33, 7.x < 7.0.12 - Access Bypass via HTTP Digest Auth
CVE-2011-5054
kcheckpass - Improper Authentication via PAM Service Name Manipulation
CVE-2011-5053
Wi-Fi Protected Setup Protocol - Improper Authentication via EAP-NACK Message Handling
CVE-2011-4644
Splunk < 4.2.5 - Unauthenticated Arbitrary File Read and Management Command Execution
CVE-2011-3667
Bugzilla < 3.4.13, < 3.6.7, < 4.0.3, <= 4.1.3 - Unauthenticated Account Creation
CVE-2011-3372
Cyrus IMAPd < 2.4.12 - Unauthenticated Authentication Bypass via AUTHINFO USER Command
CVE-2011-4860
Schneider Electric Quantum Ethernet Module Unauthenticated Password Generation
CVE-2011-4677
One Click Orgs < 1.2.3 - Unauthenticated Credential Theft via Autocomplete
CVE-2011-4051
InduSoft Web Studio 6.1 and 7.0 - Unauthenticated Remote Code Execution via CEServer Remote Agent
CVE-2011-1372
IBM TS3100/TS3200 <A.60 - Auth Bypass
CVE-2011-3997
Opengear console server <2.2.1 - Auth Bypass
CVE-2011-2014
Windows LDAPS - Authenticated Authentication Bypass via Revoked Certificate
CVE-2011-2676
ark-web a-form < 1.3.6 and 2.x < 2.0.3 - Improper Authentication
CVE-2011-4214
OneOrZero AIMS 2.7.0 - Unauthenticated Authentication Bypass via oozimsrememberme Cookie
CVE-2011-3298
Cisco ASA 7.0-7.2, 8.0-8.5 & FWSM 3.1-4.1 - TACACS+ Authentication Bypass
CVE-2011-3297
Cisco Firewall Services Module DoS via Authentication Request Flood
CVE-2011-2766
fast_cgi 0.70-0.73 - Authentication Bypass via HTTP Header Injection
CVE-2011-3577
IBM WebSphere Commerce <6.0.0.11 & <7.0.0.3 - Info Disclosure
CVE-2011-2925
Red Hat Enterprise MRG 2.0 - Improper Authentication via Logged Credentials
CVE-2011-2176
GNOME NetworkManager <0.8.6 - Privilege Escalation
CVE-2011-1411
Shibboleth OpenSAML <2.4.3, <2.5.1 - Auth Bypass
Details
Vulnerabilities
4,376
Exploit Likelihood
High