目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

access:pre-auth 标签下的 CVE 漏洞 20697

access:pre-auth 类型相关 20697 条 CVE 漏洞,含 AI 中文分析、CVSS、参考链接与 POC。

“access:pre-auth”标签标识了无需身份验证即可触发的漏洞,涵盖18971个CVE。此类漏洞之所以关键,是因为攻击者无需凭证即可直接利用,极大降低了攻击门槛并扩大了潜在受害面。典型场景包括远程代码执行、未授权数据访问及拒绝服务攻击,常见于配置错误的API接口、默认凭证服务或存在逻辑缺陷的认证前处理模块,对系统安全性构成直接且严重的威胁。

CVE ID标题CVSS风险等级Published
CVE-2016-20053 REDAXO 跨站请求伪造漏洞 — Redaxo CMSCWE-352 5.3 Medium2026-04-04
CVE-2016-20051 sNews 跨站请求伪造漏洞 — Snews CMS Cross Site Request ForgeryCWE-352 5.3 Medium2026-04-04
CVE-2016-20052 sNews 代码问题漏洞 — Snews CMS upload shellerCWE-434 9.8 Critical2026-04-04
CVE-2026-2936 WordPress plugin Visitor Traffic Real Time Statistics 跨站脚本漏洞 — Visitor Traffic Real Time StatisticsCWE-79 7.2 High2026-04-04
CVE-2026-1233 WordPress plugin Text to Speech for WP (AI Voices by Mementor) 信任管理问题漏洞 — Text to Speech – TTSWPCWE-798 7.5 High2026-04-04
CVE-2025-14938 WordPress plugin Listeo Core 代码问题漏洞 — Listeo-Core - Directory Plugin by PurethemesCWE-434 5.3 Medium2026-04-04
CVE-2026-3309 WordPress plugin Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress 代码注入漏洞 — Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePressCWE-94 6.5 Medium2026-04-04
CVE-2026-5425 WordPress plugin Widgets for Social Photo Feed 跨站脚本漏洞 — Widgets for Social Photo FeedCWE-79 7.2 High2026-04-04
CVE-2026-3571 WordPress plugin Pie Register – User Registration, Profiles & Content Restriction 安全漏洞 — Pie Register – User Registration, Profiles & Content RestrictionCWE-862 6.5 Medium2026-04-04
CVE-2026-35616 Fortinet FortiClientEms 安全漏洞 — FortiClientEMSCWE-284 9.1 Critical2026-04-04
CVE-2017-20235 ProSoft ICX35-HWC 授权问题漏洞 — ICX35-HWC Cellular GatewayCWE-287 9.1 Critical2026-04-03
CVE-2017-20234 Belden GarrettCom Magnum 6K和Belden GarrettCom Magnum 10K 信任管理问题漏洞 — GarrettCom Magnum 6K and 10K Managed SwitchesCWE-798 9.8 Critical2026-04-03
CVE-2018-25236 Belden Hirschmann HiOS和Belden Hirschmann HiSecOS 授权问题漏洞 — Hirschmann HiOSCWE-287 9.8 Critical2026-04-03
CVE-2026-34824 Mesop 安全漏洞 — mesopCWE-125 7.5 High2026-04-03
CVE-2015-10148 Belden多款产品 安全漏洞 — Hirschmann HiLCOSCWE-321 8.2 High2026-04-03
CVE-2026-27833 Piwigo 安全漏洞 — PiwigoCWE-862 7.5 High2026-04-03
CVE-2026-27634 Piwigo SQL注入漏洞 — PiwigoCWE-89 7.5AIHighAI2026-04-03
CVE-2026-27481 Discourse 信息泄露漏洞 — discourseCWE-200 5.3AIMediumAI2026-04-03
CVE-2026-34980 OpenPrinting CUPS 输入验证错误漏洞 — cupsCWE-20 9.8AICriticalAI2026-04-03
CVE-2017-20237 Belden Hirschmann Industrial HiVision 授权问题漏洞 — Hirschmann Industrial HiVisionCWE-287 9.8 Critical2026-04-03
CVE-2026-28798 ZimaOS 代码问题漏洞 — ZimaOSCWE-918 9.1 Critical2026-04-03
CVE-2026-0545 MLflow 访问控制错误漏洞 — mlflow/mlflowCWE-306 9.8AICriticalAI2026-04-03
CVE-2026-35216 Budibase 安全漏洞 — budibaseCWE-78 9.1 Critical2026-04-03
CVE-2026-25043 Budibase 安全漏洞 — budibaseCWE-770 5.3 Medium2026-04-03
CVE-2026-31402 Linux kernel 安全漏洞 — Linux 9.8 Critical2026-04-03
CVE-2026-35537 Roundcube Webmail 代码问题漏洞 — WebmailCWE-502 3.7 Low2026-04-03
CVE-2024-14033 Belden Hirschmann EagleSDV 资源管理错误漏洞 — Hirschmann EagleSDVCWE-400 7.5 High2026-04-02
CVE-2024-14034 Belden Hirschmann HiEOS LRS11 安全漏洞 — Hirschmann HiEOS LRS11CWE-287 9.8 Critical2026-04-02
CVE-2026-34834 Bulwark Webmail 授权问题漏洞 — webmailCWE-287 8.2AIHighAI2026-04-02
CVE-2026-35383 Bentley Systems iTwin Platform 安全漏洞 — iTwin PlatformCWE-540 6.5 Medium2026-04-02

access:pre-auth 是常见的弱点类别,本平台收录该类弱点关联的 20697 条 CVE 漏洞。