Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

access:pre-auth — CVE vulnerabilities tagged 20447

20447 CVE security advisories tagged "access:pre-auth" with AI Chinese analysis, CVSS, references and POCs.

The tag "access:pre-auth" identifies vulnerabilities that allow unauthenticated attackers to gain unauthorized access to a system, application, or network resource before legitimate credentials are verified. This classification is critical because it represents the lowest barrier to entry for exploitation, enabling remote code execution, data exfiltration, or full system compromise without prior authentication. Typical scenarios involve flaws in authentication mechanisms, such as broken access controls, insecure direct object references, or logic errors in session management that bypass login requirements. Attackers frequently target these weaknesses via exposed APIs, administrative interfaces, or default configurations. Because no user interaction or valid credentials are needed, pre-authentication flaws are among the most severe and widely exploited security issues, often leading to immediate breach of confidentiality, integrity, and availability across affected infrastructure.

CVE IDTitleCVSSSeverityPublished
CVE-2017-6652 Cisco TelePresence IX5000 Series 安全漏洞 — Cisco TelePresence IX5000 SeriesCWE-22 7.5 -2017-05-18
CVE-2017-7433 Micro Focus Vibe 路径遍历漏洞 — Vibe 6.5 -2017-05-18
CVE-2017-8338 MikroTik 安全漏洞 — n/a 7.5 -2017-05-18
CVE-2017-9025 HooToo Trip Mate 6 vshttpd 缓冲区错误漏洞 — n/a 8.2 -2017-05-17
CVE-2017-9026 HooToo Trip Mate 6 vshttpd 缓冲区错误漏洞 — n/a 9.4 -2017-05-17
CVE-2017-3825 多款Cisco产品TelePresence Collaboration Endpoint Software 安全漏洞 — Cisco TelePresenceCWE-20 7.5 -2017-05-16
CVE-2017-3873 Cisco Aironet 1800、2800和3800 Series Access Points Plug-and-Play子系统安全漏洞 — Cisco Aironet 1800, 2800, and 3800 Series Access PointsCWE-20 7.5 -2017-05-16
CVE-2017-3876 Cisco IOS XR Software 安全漏洞 — Cisco IOS XRCWE-399 7.5 -2017-05-16
CVE-2017-3882 Cisco CVR100W Wireless-N VPN Router 缓冲区错误漏洞 — Cisco CVR100W Wireless-N VPN RouterCWE-119 9.6 -2017-05-16
CVE-2017-6651 Cisco WebEx Meetings Server 信息泄露漏洞 — Cisco WebEx Meetings ServerCWE-200 7.5 -2017-05-16
CVE-2017-7478 OpenVPN 安全漏洞 — openvpnCWE-617 7.5 -2017-05-15
CVE-2017-8897 Invision Power Services Community Suite IPS UTF8 Converter 跨站脚本漏洞 — n/a 6.1 -2017-05-11
CVE-2017-8895 Veritas Technologies Veritas Backup Exec 2014 资源管理错误漏洞 — n/a 9.8 -2017-05-10
CVE-2016-9250 F5 BIG-IP 安全漏洞 — BIG-IP 7.5 -2017-05-10
CVE-2017-8856 Symantec Veritas NetBackup和NetBackup Appliance 安全漏洞 — n/a 9.8 -2017-05-09
CVE-2017-8857 Symantec Veritas NetBackup和NetBackup Appliance 安全漏洞 — n/a 9.8 -2017-05-09
CVE-2017-8858 Symantec Veritas NetBackup和NetBackup Appliance 安全漏洞 — n/a 9.8 -2017-05-09
CVE-2017-8859 Symantec Veritas NetBackup Appliance 安全漏洞 — n/a 9.8 -2017-05-09
CVE-2017-6620 Cisco CVR100W Wireless-N VPN Router 安全漏洞 — Cisco CVR100W Wireless-N VPN RouterCWE-264 5.8 -2017-05-03
CVE-2017-6624 Cisco CallManager Express Cisco IOS Software 安全漏洞 — Cisco CallManager ExpressCWE-264 5.3 -2017-05-03
CVE-2017-6626 Cisco Unified Contact Center Enterprise 信息泄露漏洞 — Cisco Finesse for Cisco Unified Contact Center EnterpriseCWE-200 7.5 -2017-05-03
CVE-2017-6628 Cisco Wide Area Application Services 安全漏洞 — Cisco Wide Area Application Services SMART-SSL AcceleratorCWE-399 5.9 -2017-05-03
CVE-2017-6629 Cisco Unity Connection 安全漏洞 — Cisco Unity ConnectionCWE-22 7.5 -2017-05-03
CVE-2016-2930 IBM BigFix Remote Control 安全漏洞 — BigFix Remote Control 7.5 -2017-05-03
CVE-2016-10367 Opsview Monitor Pro 路径遍历漏洞 — n/a 7.5 -2017-05-03
CVE-2017-8403 360fly 4K 安全漏洞 — n/a 8.8 -2017-05-01
CVE-2017-8223 Wireless IP Camera (P2P) WIFICAM 安全漏洞 — n/a 7.5 -2017-04-25
CVE-2017-3342 Oracle E-Business Suite Oracle Marketing 安全漏洞 — Marketing 7.1 -2017-04-25
CVE-2017-3345 Oracle E-Business Suite Oracle Marketing 安全漏洞 — Marketing 7.1 -2017-04-25
CVE-2017-3347 Oracle E-Business Suite Oracle Marketing 安全漏洞 — Marketing 7.1 -2017-04-25

Vulnerabilities classified as access:pre-auth represent 20447 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.