CWE-294
272 CVEs • Abstraction: Base • Likelihood of Exploit: High
Authentication Bypass by Capture-replay
A capture-replay flaw exists when the design of the product makes it possible for a malicious user to sniff network traffic and bypass authentication by replaying it to the server in question to the same effect as the original message (or with minor changes).
CVEs (272)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Incorrect Session Management and Credential Re-use in the Bluetooth LE stack of the Ultraloq UL3 2nd Gen Smart Lock Firmware 02.27.0012 allows an attacker to sniff the unlock code and unlock the device whilst within Blue...Show more |
1Nec 2Expresscluster X Expresscluster X SingleserversafeJun 17, 2026 Nov 17, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 CLUSTERPRO X Ver5.1 and earlier and EXPRESSCLUSTER X 5.1 and earlier, CLUSTERPRO X SingleServerSafe 5.1 and earlier, EXPRESSCLUSTER X SingleServerSafe 5.1 and earlier allows a attacker to log in to the product may execut...Show more |
A vulnerability has been identified in Mendix Applications using Mendix 10 (All versions < V10.4.0), Mendix Applications using Mendix 7 (All versions < V7.23.37), Mendix Applications using Mendix 8 (All versions < V8.18....Show more |
1Bakerhughes 1Bentley Nevada 3500 System Firmware Jun 17, 2026 Oct 19, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2
Baker Hughes – Bently Nevada 3500 System TDI Firmware version 5.05
contains a replay vulnerability which could allow an attacker to
replay older captured packets of traffic to the device to gain access.
|
Sustainsys.Saml2 library adds SAML2P support to ASP.NET web sites, allowing the web site to act as a SAML2 Service Provider. Prior to versions 1.0.3 and 2.9.2, when a response is processed, the issuer of the Identity Pr...Show more |
A remote authentication bypass issue exists in some
OneView APIs.
|
A Hyundai model (2017) - CWE-294: Authentication Bypass by Capture-replay.
|
4Debian FedoraprojectNetapp+1 more5Debian Linux FedoraOntap Select Deploy Administration Utility+2 moreJun 17, 2026 Aug 31, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A malicious actor that has been granted Guest Operation Privileges https://docs.vmware.com/en/VMware-vSphere/8.0/vsphere-security/GUID-6A952214-0E5E-4CCF-9D2A-90948FF643EC.html in a target virtual machine may be able t...Show more |
ShowMojo MojoBox Digital Lockbox 1.4 is vulnerable to Authentication Bypass. The implementation of the lock opening mechanism via Bluetooth Low Energy (BLE) is vulnerable to replay attacks. A malicious user is able to in...Show more |
Vulnerability of identity verification being bypassed in the storage module. Successful exploitation of this vulnerability may affect service confidentiality. |
1Mitsubishielectric 150Fx3g 14mr/ds Firmware Fx3g 14mr/es A FirmwareFx3g 14mr/es Firmware+147 moreJun 17, 2026 Jun 30, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Authentication Bypass by Capture-replay vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series main modules allows a remote unauthenticated attacker to cancel the password/keyword setting and login to the af...Show more |
1Wafucn 1Wafu Keyless Smart Lock Firmware Jun 17, 2026 Jun 22, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 An issue was discovered in WAFU Keyless Smart Lock v1.0 allows attackers to unlock a device via code replay attack. |
SUBNET PowerSYSTEM Center versions 2020 U10 and prior are vulnerable to replay attacks which may result in a denial-of-service condition or a loss of data integrity.
|
GL.iNET GL-AR750S-Ext firmware v3.215 inserts the admin authentication token into a GET request when the OpenVPN Server config file is downloaded. The token is then left in the browser history or access logs, potentially...Show more |
1Agshome Smart Alarm Project 1Agshome Smart Alarm Firmware Jun 17, 2026 May 24, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Weak security in the transmitter of AGShome Smart Alarm v1.0 allows attackers to gain full access to the system via a code replay attack. |
Weak security in the transmitter of Digoo DG-HAMB Smart Home Security System v1.0 allows attackers to gain full access to the system via a code replay attack. |
Weak security in the transmitter of Blitzwolf BW-IS22 Smart Home Security Alarm v1.0 allows attackers to gain full access to the system via a code replay attack. |
Weak Security in the 433MHz keyfob of Kerui W18 Alarm System v1.0 allows attackers to gain full access via a code replay attack. |
1Nissan 1Sylphy Classic 2021 Firmware Jun 17, 2026 May 22, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 The remote keyfob system on Nissan Sylphy Classic 2021 sends the same RF signal for each door-open request, which allows for a replay attack. NOTE: the vendor's position is that this cannot be reproduced with genuine Nis...Show more |
An issue was discovered in IO FinNet tss-lib before 2.0.0. The parameter ssid for defining a session id is not used through the MPC implementation, which makes replaying and spoofing of messages easier. In particular, th...Show more |