CWE-287

High likelihood

Improper Authentication

Parent: CWE-284 - Improper Access Control

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

4,195 vulnerabilities with CWE-287
CVE-2026-0589 HIGH
Fabian Online Product Reservation System - Authentication Bypass
CVSS 7.3
CVE-2025-46641 MEDIUM
Dell PowerProtect Data Domain 8.4-8.5 - Auth Bypass
CVSS 6.6
CVE-2025-46607 MEDIUM
Dell PowerProtect Data Domain 8.4-8.5 - Auth Bypass
CVSS 6.6
CVE-2025-15484 CRITICAL
Order Notification for WooCommerce < 3.6.3 - Unauthenticated WooCommerce REST Permission Bypass
CVSS 9.1
CVE-2025-71279 CRITICAL
XenForo Passkey Security Bypass
CVSS 9.8
CVE-2025-14716 MEDIUM
Unauthorized access to information
CVSS 6.5
CVE-2025-68402 HIGH
FreshRSS 57e1a37-00f2f04 - Auth Bypass
CVE-2025-71057 HIGH
D-Link DSL-124 ME_1.00 - Session Hijacking
CVSS 8.2
CVE-2025-70833 CRITICAL
Smanga 3.2.7 - Auth Bypass
CVSS 9.4
CVE-2025-41023 MEDIUM
AutoGPT - Auth Bypass
CVE-2025-15586 CRITICAL
OGP-Website <52f865a - Auth Bypass
CVE-2025-15581 MEDIUM
Orthanc <1.12.10 - Privilege Escalation
CVE-2025-7630 MEDIUM
Wispotter <2025.10.08.1 - Auth Bypass
CVSS 5.3
CVE-2025-68663 MEDIUM
Outline <1.1.0 - SSRF
CVSS 5.3
CVE-2025-65128 HIGH
Shenzhen Zhibotong Electronics ZBT WE2001 23.09.27 - Auth Bypass
CVSS 8.1
CVE-2025-65127 MEDIUM
Shenzhen Zhibotong Electronics ZBT WE2001 23.09.27 - Info Disclosure
CVSS 6.5
CVE-2025-10463 HIGH
Birtech Senseway <09022026 - Auth Bypass
CVSS 7.3
CVE-2025-64175 HIGH
Gogs < 0.13.4 - Authentication Bypass
CVSS 8.8
CVE-2025-70841 CRITICAL
Amcoders Dokans - Authentication Bypass
CVSS 10.0
CVE-2025-62349 MEDIUM
Pypi Salt < 3006.17 - Authentication Bypass
CVSS 6.2
CVE-2025-6723 MEDIUM
Chef InSpec <5.23 - Privilege Escalation
CVE-2025-12810 MEDIUM
Delinea Inc. Secret Server On-Prem - Improper Authentication
CVSS 6.5
CVE-2025-69822 HIGH
Atomberg Erica Smart Fan Firmware - Information Disclosure
CVSS 7.4
CVE-2025-67822 CRITICAL
Mitel Mivoice Mx-one < 7.8 - Authentication Bypass
CVSS 9.4
CVE-2025-65397 MEDIUM
Blurams Dome Flare Firmware < 24.1114.151.929 - Authentication Bypass
CVSS 6.8
Details
Vulnerabilities 4,195
Exploit Likelihood High