Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

access:pre-auth — CVE vulnerabilities tagged 19298

19298 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

The tag "access:pre-auth" identifies vulnerabilities that allow unauthenticated attackers to gain unauthorized access to a system, application, or network resource before legitimate credentials are verified. This classification is critical because it represents the lowest barrier to entry for exploitation, enabling remote code execution, data exfiltration, or full system compromise without prior authentication. Typical scenarios involve flaws in authentication mechanisms, such as broken access controls, insecure direct object references, or logic errors in session management that bypass login requirements. Attackers frequently target these weaknesses via exposed APIs, administrative interfaces, or default configurations. Because no user interaction or valid credentials are needed, pre-authentication flaws are among the most severe and widely exploited security issues, often leading to immediate breach of confidentiality, integrity, and availability across affected infrastructure.

CVE IDTitleCVSSSeverityPublished
CVE-2017-6648 Cisco TelePresence Codec和Collaboration Endpoint软件资源管理错误漏洞 — Cisco TelePresence Endpoint Denial of Service VulnerabilityCWE-399 7.5 -2017-06-08
CVE-2017-2311 Juniper Networks Junos Space 安全漏洞 — Junos Space 5.3 -2017-05-30
CVE-2017-9294 Hitachi Device Manager 安全漏洞 — n/a 9.8 -2017-05-29
CVE-2017-9148 FreeRADIUS 安全漏洞 — n/a 9.1 -2017-05-29
CVE-2016-4435 BOSH Director VM 安全漏洞 — Cloud Foundry 8.1 -2017-05-25
CVE-2017-6630 Cisco IP Phone 8851 安全漏洞 — Cisco IP Phone 8851CWE-399 7.5 -2017-05-22
CVE-2017-6632 Cisco FirePOWER System Software 安全漏洞 — Cisco FirePOWER System SoftwareCWE-399 7.5 -2017-05-22
CVE-2017-6633 Cisco UCS C-Series Rack Servers 安全漏洞 — Cisco UCS C-Series Rack ServersCWE-119 7.5 -2017-05-22
CVE-2017-6634 Cisco Industrial Ethernet 1000 Series Switches 跨站请求伪造漏洞 — Cisco Industrial Ethernet 1000 Series SwitchesCWE-352 8.8 -2017-05-22
CVE-2017-6641 Cisco Remote Expert Manager Software 安全漏洞 — Cisco Remote Expert ManagerCWE-399 7.5 -2017-05-22
CVE-2017-6642 Cisco Remote Expert Manager Software 信息泄露漏洞 — Cisco Remote Expert ManagerCWE-200 5.3 -2017-05-22
CVE-2017-6643 Cisco Remote Expert Manager Software 信息泄露漏洞 — Cisco Remote Expert ManagerCWE-200 5.3 -2017-05-22
CVE-2017-6644 Cisco Remote Expert Manager Software 信息泄露漏洞 — Cisco Remote Expert ManagerCWE-200 5.3 -2017-05-22
CVE-2017-6645 Cisco Remote Expert Manager Software 信息泄露漏洞 — Cisco Remote Expert ManagerCWE-200 5.3 -2017-05-22
CVE-2017-6646 Cisco Remote Expert Manager Software 信息泄露漏洞 — Cisco Remote Expert ManagerCWE-200 5.3 -2017-05-22
CVE-2017-6647 Cisco Remote Expert Manager Software 信息泄露漏洞 — Cisco Remote Expert ManagerCWE-200 5.3 -2017-05-22
CVE-2017-6653 Cisco Identity Services Engine 安全漏洞 — Cisco Identity Services EngineCWE-399 7.5 -2017-05-22
CVE-2017-6654 Cisco Unified Communications Manager 跨站脚本漏洞 — Cisco Unified Communications ManagerCWE-79 6.1 -2017-05-22
CVE-2017-9131 Mimosa Client Radios和Mimosa Backhaul Radios 安全漏洞 — n/a 7.5 -2017-05-21
CVE-2017-6621 Cisco Prime Collaboration Provisioning Software 信息泄露漏洞 — Cisco Prime CollaborationCWE-200 7.5 -2017-05-18
CVE-2017-6622 Cisco Prime Collaboration Provisioning Software 安全漏洞 — Cisco Prime Collaboration ProvisioningCWE-264 9.8 -2017-05-18
CVE-2017-6652 Cisco TelePresence IX5000 Series 安全漏洞 — Cisco TelePresence IX5000 SeriesCWE-22 7.5 -2017-05-18
CVE-2017-7433 Micro Focus Vibe 路径遍历漏洞 — Vibe 6.5 -2017-05-18
CVE-2017-8338 MikroTik 安全漏洞 — n/a 7.5 -2017-05-18
CVE-2017-9025 HooToo Trip Mate 6 vshttpd 缓冲区错误漏洞 — n/a 8.2 -2017-05-17
CVE-2017-9026 HooToo Trip Mate 6 vshttpd 缓冲区错误漏洞 — n/a 9.4 -2017-05-17
CVE-2017-3825 多款Cisco产品TelePresence Collaboration Endpoint Software 安全漏洞 — Cisco TelePresenceCWE-20 7.5 -2017-05-16
CVE-2017-3873 Cisco Aironet 1800、2800和3800 Series Access Points Plug-and-Play子系统安全漏洞 — Cisco Aironet 1800, 2800, and 3800 Series Access PointsCWE-20 7.5 -2017-05-16
CVE-2017-3876 Cisco IOS XR Software 安全漏洞 — Cisco IOS XRCWE-399 7.5 -2017-05-16
CVE-2017-3882 Cisco CVR100W Wireless-N VPN Router 缓冲区错误漏洞 — Cisco CVR100W Wireless-N VPN RouterCWE-119 9.6 -2017-05-16

Vulnerabilities classified as access:pre-auth represent 19298 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.