CWE-290
627 CVEs • Abstraction: Base
Authentication Bypass by Spoofing
This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.
CVEs (627)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Dell Emc4Emc Unisphere Solutions EnablerVasa+1 moreMay 13, 2026 Nov 1, 2017 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 EMC Unisphere for VMAX Virtual Appliance (vApp) versions prior to 8.4.0.15, EMC Solutions Enabler Virtual Appliance versions prior to 8.4.0.15, EMC VASA Virtual Appliance versions prior to 8.4.0.512, and EMC VMAX Embedde...Show more |
1Lavalink 1Ether Serial Link Firmware May 13, 2026 Oct 11, 2017 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An Authentication Bypass by Spoofing issue was discovered in LAVA Ether-Serial Link (ESL) running firmware versions 6.01.00/29.03.2007 and prior versions. An improper authentication vulnerability has been identified, whi...Show more |
MetInfo through 5.3.17 accepts the same CAPTCHA response for 120 seconds, which makes it easier for remote attackers to bypass intended challenge requirements by modifying the client-server data stream, as demonstrated b...Show more |
KDE kdelibs before 4.14.32 and KAuth before 5.34 allow local users to gain root privileges by spoofing a callerID and leveraging a privileged helper app. |
1Veritas 2Netbackup Netbackup ApplianceMay 13, 2026 Mar 2, 2017 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 An issue was discovered in Veritas NetBackup 8.0 and earlier and NetBackup Appliance 3.0 and earlier. Hostname-based security is open to DNS spoofing. |
1Snom 5Snom 300 Firmware Snom 320 FirmwareSnom 360 Firmware+2 moreApr 23, 2026 Aug 14, 2009 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 The web interface on the snom VoIP phones snom 300, snom 320, snom 360, snom 370, and snom 820 with firmware 6.5 before 6.5.20, 7.1 before 7.1.39, and 7.3 before 7.3.14 allows remote attackers to bypass authentication, a...Show more |
2Microsoft Netscape5Enterprise Server Fasttrack ServerFrontpage+2 moreApr 16, 2026 Feb 6, 1998 N/A· v4 7.0 HIGH· v3 5.0 MEDIUM· v2 Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names. |