Vulnerabilities (CVE)

Filtered by CWE-287
Total 3726 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-4621 1 Magdevgroup 1 Magnolia Cms 2024-11-21 7.5 HIGH 9.8 CRITICAL
Magnolia CMS before 4.5.9 has multiple access bypass vulnerabilities
CVE-2013-4593 1 Omniauth-facebook Project 1 Omniauth-facebook 2024-11-21 5.0 MEDIUM 7.5 HIGH
RubyGem omniauth-facebook has an access token security vulnerability
CVE-2013-4462 1 Portable Phpmyadmin Project 1 Portable Phpmyadmin 2024-11-21 6.4 MEDIUM 9.1 CRITICAL
WordPress Portable phpMyAdmin Plugin has an authentication bypass vulnerability
CVE-2013-4454 1 Getbutterfly 1 Portable-phpmyadmin 2024-11-21 6.4 MEDIUM 9.1 CRITICAL
WordPress Portable phpMyAdmin Plugin 1.4.1 has Multiple Security Bypass Vulnerabilities
CVE-2013-3367 1 Trendnet 4 Tew-691gr, Tew-691gr Firmware, Tew-692gr and 1 more 2024-11-21 10.0 HIGH 9.8 CRITICAL
Undocumented TELNET service in TRENDnet TEW-691GR and TEW-692GR when a web page named backdoor contains an HTML parameter of password and a value of j78G¬DFdg_24Mhw3.
CVE-2013-3317 1 Netgear 2 Wnr1000, Wnr1000 Firmware 2024-11-21 10.0 HIGH 9.8 CRITICAL
Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass via the NtgrBak key.
CVE-2013-3316 1 Netgear 2 Wnr1000, Wnr1000 Firmware 2024-11-21 10.0 HIGH 9.8 CRITICAL
Netgear WNR1000v3 with firmware before 1.0.2.60 contains an Authentication Bypass due to the server skipping checks for URLs containing a ".jpg".
CVE-2013-3215 1 Vtiger 1 Vtiger Crm 2024-11-21 7.5 HIGH 9.8 CRITICAL
vtiger CRM 5.4.0 and earlier contain an Authentication Bypass Vulnerability due to improper authentication validation in the validateSession function.
CVE-2013-3096 1 Dlink 2 Dir865l, Dir865l Firmware 2024-11-21 4.3 MEDIUM 5.9 MEDIUM
D-Link DIR865L v1.03 suffers from an "Unauthenticated Hardware Linking" vulnerability.
CVE-2013-3091 1 Belkin 2 N300, N300 Firmware 2024-11-21 10.0 HIGH 9.8 CRITICAL
An Authentication Bypass vulnerability in Belkin N300 (F7D7301v1) router allows remote attackers to bypass authentication using "Javascript debugging."
CVE-2013-3088 1 Belkin 2 N900, N900 Firmware 2024-11-21 9.3 HIGH 9.8 CRITICAL
Belkin N900 router (F9K1104v1) contains an Authentication Bypass using "Javascript debugging".
CVE-2013-3085 1 Belkin 2 F5d8236-4, F5d8236-4 Firmware 2024-11-21 7.5 HIGH 9.8 CRITICAL
An authentication bypass exists in the web management interface in Belkin F5D8236-4 v2.
CVE-2013-3072 1 Netgear 2 Wndr4700, Wndr4700 Firmware 2024-11-21 7.5 HIGH 9.8 CRITICAL
An Authentication Bypass vulnerability exists in NETGEAR Centria WNDR4700 Firmware 1.0.0.34 in http://<router_ip>/apply.cgi?/hdd_usr_setup.htm that when visited by any user, authenticated or not, causes the router to no longer require a password to access the web administration portal.
CVE-2013-3071 1 Netgear 2 Wndr4700, Wndr4700 Firmware 2024-11-21 7.5 HIGH 9.8 CRITICAL
NETGEAR Centria WNDR4700 devices with firmware 1.0.0.34 allow authentication bypass.
CVE-2013-2681 1 Cisco 2 Linksys E4200, Linksys E4200 Firmware 2024-11-21 4.3 MEDIUM 9.8 CRITICAL
Cisco Linksys E4200 1.0.05 Build 7 devices contain a Security Bypass Vulnerability which could allow remote attackers to gain unauthorized access.
CVE-2013-2569 1 Zavio 4 F3105, F3105 Firmware, F312a and 1 more 2024-11-21 5.0 MEDIUM 7.5 HIGH
A Security Bypass vulnerability exists in Zavio IP Cameras through 1.6.3 because the RTSP protocol authentication is disabled by default, which could let a malicious user obtain unauthorized access to the live video stream.
CVE-2013-2159 1 Monkey-project 1 Monkey 2024-11-21 7.5 HIGH 9.8 CRITICAL
Monkey HTTP Daemon: broken user name authentication
CVE-2013-2120 1 Kde 1 Paste Applet 2024-11-21 2.1 LOW 8.4 HIGH
The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.
CVE-2013-1600 1 Dlink 4 Dcs-2102, Dcs-2102 Firmware, Dcs-2121 and 1 more 2024-11-21 5.0 MEDIUM 5.3 MEDIUM
An Authentication Bypass vulnerability exists in upnp/asf-mp4.asf when streaming live video in D-Link TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DCS-2121 1.06_FR, 1.06, and 1.05_RU, DCS-2102 1.06_FR. 1.06, and 1.05_RU, which could let a malicious user obtain sensitive information.
CVE-2013-1596 1 Vivotek 2 Pt7135, Pt7135 Firmware 2024-11-21 5.0 MEDIUM 5.3 MEDIUM
An Authentication Bypass Vulnerability exists in Vivotek PT7135 IP Camera 0300a and 0400a via specially crafted RTSP packets to TCP port 554.