CWE-287

High likelihood

Improper Authentication

Parent: CWE-284 - Improper Access Control

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

4,376 vulnerabilities with CWE-287
CVE-2011-2762
LifeSize Room Appliance Software - Authentication Bypass via AMF Data in gateway.php
CVE-2011-2733
RSA Adaptive Authentication On-Premise Authenticated Authentication Bypass via Session Reuse
CVE-2011-2907
TORQUE Resource Manager < 3.0.1 - Unauthenticated Job Submission via PBS_O_HOST Variable
CVE-2011-0527
VMware tc Server 2.0.x-2.0.6 & 2.1.x-2.1.2 - Improper Authentication via Obfuscated Password
CVE-2011-2701
FreeRADIUS 2.1.11 - Authentication Bypass via OCSP Reply Parsing
CVE-2011-2361
Google Chrome < 13.0.782.107 - Credential Capture via Basic Authentication Dialog
CVE-2011-2963
Progea Movicon 11.2 - Unauthenticated Remote Code Execution and Denial of Service via TCP Port 10651
CVE-2011-2956
AzeoTech DAQFactory < 5.85 - Unauthenticated Denial of Service via Signal Handling
CVE-2011-2758
IBM Tivoli Directory Server < 6.2.0.3-TIV-ITDS-IF0004 - Unauthenticated Sensitive Information Exposure via IDSWebApp
CVE-2011-2756
ManageEngine ServiceDesk Plus 8.0 - Unauthenticated Arbitrary File Read via FileDownload.jsp
CVE-2011-1409
Frams' F*EX <20110610 - Auth Bypass
CVE-2011-1758
SSSD 1.5.x < 1.5.7 - Kerberos Authentication Bypass via Temporary File Pathname
CVE-2011-1766
MediaWiki < 1.16.5 - Authentication Bypass via Cached User Data
CVE-2011-2155
SmarterStats 6.0 - Improper Authentication via Password Field Autocomplete
CVE-2011-1901
Proofpoint Messaging Security Gateway < 6.2.0.263 & Protection Server 5.5.3-6.2.0 - Authentication Bypass
CVE-2011-1674
NetGear ProSafe WNAP210 <2.0.12 - Auth Bypass
CVE-2011-1561
IBM AIX 6.1 - Unauthenticated Authentication Bypass via LDAP Login
CVE-2011-1472
Nokia E75 <211.12.01 - Auth Bypass
CVE-2011-1520
IBM Lotus Domino - Unauthenticated Administrative Access via Server Console
CVE-2011-1519
IBM Lotus Domino <8.x - Auth Bypass
CVE-2011-1025
OpenLDAP 2.4.x < 2.4.24 - Unauthenticated Improper Authentication via Root DN
CVE-2011-0438
nss-pam-ldapd 0.8.0 - Improper Authentication via PAM Module
CVE-2011-0435
Domain Technologie Control < 0.32.9 - Unauthenticated Sensitive Information Exposure via Bandwidth Endpoints
CVE-2011-0279
HP Multifunction Peripheral Digital Sending Software 4.91.00 - Improper Authentication
CVE-2011-0718
Red Hat Network Satellite Server 5.4 - Improper Authentication via Missing Login Delay
Details
Vulnerabilities 4,376
Exploit Likelihood High