access:pre-auth 类型相关 22137 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。
“access:pre-auth”标签标识了无需身份验证即可触发的漏洞,涵盖18971个CVE。此类漏洞之所以关键,是因为攻击者无需凭证即可直接利用,极大降低了攻击门槛并扩大了潜在受害面。典型场景包括远程代码执行、未授权数据访问及拒绝服务攻击,常见于配置错误的API接口、默认凭证服务或存在逻辑缺陷的认证前处理模块,对系统安全性构成直接且严重的威胁。
| CVE ID | 标题 | CVSS | 风险等级 | Published |
|---|---|---|---|---|
| CVE-2024-1175 | WordPress plugin WP-Recall 安全漏洞 — WP-Recall – Registration, Profile, Commerce & MoreCWE-862 | 5.3 | Medium | 2024-06-06 |
| CVE-2024-5615 | WordPress plugin Open Graph 安全漏洞 — Open GraphCWE-200 | 5.3 | Medium | 2024-06-06 |
| CVE-2024-4194 | WordPress plugin Album and Image Gallery plus Lightbox 安全漏洞 — Album and Image Gallery Plus LightboxCWE-94 | 6.5 | Medium | 2024-06-06 |
| CVE-2023-6956 | WordPress plugin EasyAzon 安全漏洞 — EasyAzon – Amazon Associates Affiliate PluginCWE-79 | 6.1 | Medium | 2024-06-06 |
| CVE-2024-0910 | WordPress plugin Restrict for Elementor 安全漏洞 — Restrict for ElementorCWE-200 | 5.3 | Medium | 2024-06-06 |
| CVE-2023-6968 | WordPress plugin The Moneytizer 安全漏洞 — The MoneytizerCWE-284 | 8.1 | High | 2024-06-06 |
| CVE-2024-36129 | OpenTelemetry Collector 安全漏洞 — opentelemetry-collectorCWE-119 | 8.2 | High | 2024-06-05 |
| CVE-2024-20405 | Cisco Finesse 安全漏洞 — Cisco Unified Contact Center EnterpriseCWE-20 | 4.8 | Medium | 2024-06-05 |
| CVE-2024-20404 | Cisco Finesse 代码问题漏洞 — Cisco Unified Contact Center EnterpriseCWE-918 | 7.2 | High | 2024-06-05 |
| CVE-2024-3469 | WordPress plugin GP Premium 安全漏洞 — GP PremiumCWE-79 | 6.1 | Medium | 2024-06-05 |
| CVE-2024-5439 | WordPress theme Blocksy 安全漏洞 — BlocksyCWE-20 | 6.4 | Medium | 2024-06-05 |
| CVE-2024-2368 | WordPress plugin Mollie Forms 安全漏洞 — Mollie FormsCWE-352 | 4.3 | Medium | 2024-06-05 |
| CVE-2024-2087 | WordPress plugin Brizy 安全漏洞 — Brizy – Page BuilderCWE-79 | 7.2 | High | 2024-06-05 |
| CVE-2024-4295 | WordPress plugin Email Subscribers 安全漏洞 — Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPressCWE-89 | 9.8 | Critical | 2024-06-05 |
| CVE-2024-5149 | WordPress plugin BuddyForms 安全漏洞 — Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for User Submissions (UGC)CWE-330 | 6.5 | Medium | 2024-06-05 |
| CVE-2024-5483 | WordPress plugin LearnPress 安全漏洞 — LearnPress – WordPress LMS Plugin for Create and Sell Online CoursesCWE-200 | 5.3 | Medium | 2024-06-05 |
| CVE-2024-5317 | WordPress plugin Newsletter 安全漏洞 — Newsletter – Send awesome emails from WordPressCWE-79 | 6.4 | Medium | 2024-06-05 |
| CVE-2024-29170 | Dell PowerScale OneFS 信任管理问题漏洞 — PowerScale OneFSCWE-798 | 8.1 | High | 2024-06-04 |
| CVE-2024-5000 | 多款CODESYS产品 安全漏洞 — CODESYS Control for BeagleBone SLCWE-131 | 7.5 | High | 2024-06-04 |
| CVE-2024-4856 | WordPress plugin FS Product Inquiry 安全漏洞 — FS Product Inquiry | 6.1AI | MediumAI | 2024-06-04 |
| CVE-2024-4857 | WordPress plugin FS Product Inquiry 安全漏洞 — FS Product Inquiry | 6.1AI | MediumAI | 2024-06-04 |
| CVE-2024-4997 | WordPress plugin WPUpper Share Buttons 安全漏洞 — WPUpper Share ButtonsCWE-862 | 5.3 | Medium | 2024-06-04 |
| CVE-2024-2382 | WordPress plugin Authorize.net Payment Gateway For WooCommerce 安全漏洞 — Authorize.net Payment Gateway For WooCommerceCWE-345 | 5.3 | Medium | 2024-06-04 |
| CVE-2024-1718 | WordPress plugin Claudio Sanches – Checkout Cielo for WooCommerce 安全漏洞 — Claudio Sanches – Checkout Cielo for WooCommerceCWE-345 | 5.3 | Medium | 2024-06-04 |
| CVE-2024-3555 | WordPress plugin Social Link Pages 安全漏洞 — Social Link Pages: link-in-bio landing pages for your social media profilesCWE-862 | 7.2 | High | 2024-06-04 |
| CVE-2024-4552 | WordPress plugin Social Login Lite For WooCommerce 安全漏洞 — Social Login Lite For WooCommerceCWE-288 | 9.8 | Critical | 2024-06-04 |
| CVE-2024-29974 | Zyxel NAS326和Zyxel NAS542 代码问题漏洞 — NAS326 firmwareCWE-434 | 9.8 | Critical | 2024-06-04 |
| CVE-2024-29973 | Zyxel NAS326和Zyxel NAS542 操作系统命令注入漏洞 — NAS326 firmwareCWE-78 | 9.8 | Critical | 2024-06-04 |
| CVE-2024-29972 | Zyxel NAS326和Zyxel NAS542 操作系统命令注入漏洞 — NAS326 firmwareCWE-78 | 9.8 | Critical | 2024-06-04 |
| CVE-2024-4332 | Tripwire 安全漏洞 — Tripwire EnterpriseCWE-303 | 8.1AI | HighAI | 2024-06-03 |
access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 22137 条 CVE 漏洞。