Falhas do tipo CWE-288

584 resultados
CVE-2025-0159CRITICALIBM FlashSystem authentication bypassEPSS 0.8%CVE-2024-4393CRITICALSocial Connect <= 1.2 - Authentication BypassEPSS 0.8%CVE-2025-32976HIGHQuest KACE Systems Management Appliance (SMA) 13.0.x before 13.0.385, 13.1.x before 13.1.81, 13.2.x before 13.2.183, 14.0.x before 14.0.341 EPSS 0.8%CVE-2022-23767HIGHSecureGate authentication bypass vulnerabilityEPSS 0.8%CVE-2024-56044CRITICALWordPress WPLMS plugin <= 1.9.9 - Unauthenticated Arbitrary User Token Generation vulnerabilityEPSS 0.8%CVE-2024-9501CRITICALWp Social Login and Register Social Counter <= 3.0.7 - Authentication Bypass via WordPress.com OAuth providerEPSS 0.8%CVE-2023-41351CRITICALChunghwa Telecom NOKIA G-040W-Q - Broken Access ControlEPSS 0.8%CVE-2025-10294CRITICALOwnID Passwordless Login <= 1.3.4 - Authentication BypassEPSS 0.8%CVE-2025-23217HIGHMitmweb API Authentication Bypass Using Proxy ServerEPSS 0.8%CVE-2023-41256CRITICALDover Fueling Solutions MAGLINK LX Console Authentication BypassEPSS 0.7%CVE-2023-43045MEDIUMIBM Sterling Partner Engagement Manager security bypassEPSS 0.7%CVE-2024-12857CRITICALAdForest <= 5.1.8 - Authentication BypassEPSS 0.7%CVE-2024-54296CRITICALWordPress CoSchool LMS plugin <= 1.4.3 - Account Takeover vulnerabilityEPSS 0.7%CVE-2024-54297CRITICALWordPress vBSSO-lite plugin <= 1.4.3 - Account Takeover vulnerabilityEPSS 0.7%CVE-2024-54294CRITICALWordPress Firebase OTP Authentication plugin <= 1.0.1 - Account Takeover vulnerabilityEPSS 0.7%CVE-2024-54295CRITICALWordPress ListApp Mobile Manager plugin <= 1.7.7 - Account Takeover vulnerabilityEPSS 0.7%CVE-2025-5821CRITICALCase Theme User <= 1.0.3 - Authentication Bypass via Social LoginEPSS 0.7%CVE-2026-40630CRITICALSenseLive X3050 Authentication bypass using an alternate path or channelEPSS 0.7%CVE-2024-6397CRITICALInstaWP Connect – 1-click WP Staging & Migration <= 0.1.0.44 - Authentication Bypass to AdminEPSS 0.7%CVE-2024-3496HIGHAuthentication Bypass VulnerabilityEPSS 0.7%