CWE-291 · 11 kayıt
Reliance on IP Address for Authentication
Bu sınıftaki CVE’ler
11 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
34İzleyin | CVE-2025-34202İstismar yok | Vasion Print (formerly PrinterLogic) Insecure Access to Docker Instances WANvasion · virtual appliance application · CWE-291 | Yüksek8,7 | — | %1,0 | 19 Eyl 2025 |
32İzleyin | CVE-2023-7211İstismar yok | Uniway Router Administrative Web Interface reliance on ip address for authenticationuniwayinfo · uw-302vp firmware · CWE-291 | Yüksek8,1 | — | %0,9 | 7 Oca 2024 |
32İzleyin | CVE-2024-23309İstismar yok | The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due to reliance on clielevel1 · wbr-6012 firmware · CWE-291 | Yüksek8,1 | — | %0,9 | 30 Eki 2024 |
30İzleyin | CVE-2025-59101İstismar yok | Insufficient Session Management in dormakaba access managerdormakaba · access manager 92xx-k5 · CWE-291 | Yüksek7,7 | — | %0,8 | 26 Oca 2026 |
30İzleyin | CVE-2023-35906İstismar yok | IBM Aspera Faspex security bypassibm · aspera faspex · CWE-291 | Yüksek7,5 | — | %0,4 | 4 Eyl 2023 |
29İzleyin | CVE-2026-3690İstismar yok | OpenClaw Canvas Authentication Bypass Vulnerabilityopenclaw · openclaw · CWE-291 | Yüksek7,4 | — | %0,6 | 10 Nis 2026 |
27İzleyin | CVE-2025-66602İstismar yok | A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.yokogawa · fast\/tools · CWE-291 | Orta6,9 | — | %0,3 | 9 Şub 2026 |
23İzleyin | CVE-2022-46415İstismar yok | DJI Spark 01.00.0900 allows remote attackers to prevent legitimate terminal connections by exhausting the DHCP IP address pool.dji · spark firmware · CWE-291 | Orta5,9 | — | %0,9 | 27 Mar 2023 |
23İzleyin | GHSA-hx53-jchx-cr52İstismar yok | Symfony2 improper IP based access controlPackagist · symfony/symfony · CWE-291 | Orta5,9 | — | — | 30 May 2024 |
16İzleyin | CVE-2024-32765İstismar yok | A vulnerability has been reported to affect Network & Virtual Switch.qnap · qts · CWE-291 | Orta4,2 | — | %0,2 | 12 Ağu 2024 |
13İzleyin | CVE-2026-86485İstismar yok | In JetBrains YouTrack before 2026.2.18634 iP spoofing via HTTP headers allowed forged Bitbucket webhooksjetbrains · youtrack · CWE-291 | Düşük3,3 | — | %0,2 | 7 Eyl 2026 |
- CVE-2025-3420234İzleyin
Vasion Print (formerly PrinterLogic) Insecure Access to Docker Instances WAN
YüksekCVSS 8,7İstismar yokEPSS %1vasion · virtual appliance application19 Eyl 2025
- CVE-2023-721132İzleyin
Uniway Router Administrative Web Interface reliance on ip address for authentication
YüksekCVSS 8,1İstismar yokEPSS %1uniwayinfo · uw-302vp firmware7 Oca 2024
- CVE-2024-2330932İzleyin
The LevelOne WBR-6012 router with firmware R0.40e6 has an authentication bypass vulnerability in its web application due to reliance on clie
YüksekCVSS 8,1İstismar yokEPSS %1level1 · wbr-6012 firmware30 Eki 2024
- CVE-2025-5910130İzleyin
Insufficient Session Management in dormakaba access manager
YüksekCVSS 7,7İstismar yokEPSS %1dormakaba · access manager 92xx-k526 Oca 2026
- CVE-2023-3590630İzleyin
IBM Aspera Faspex security bypass
YüksekCVSS 7,5İstismar yokEPSS %0ibm · aspera faspex4 Eyl 2023
- CVE-2026-369029İzleyin
OpenClaw Canvas Authentication Bypass Vulnerability
YüksekCVSS 7,4İstismar yokEPSS %1openclaw · openclaw10 Nis 2026
- CVE-2025-6660227İzleyin
A vulnerability has been found in FAST/TOOLS provided by Yokogawa Electric Corporation.
OrtaCVSS 6,9İstismar yokEPSS %0yokogawa · fast\/tools9 Şub 2026
- CVE-2022-4641523İzleyin
DJI Spark 01.00.0900 allows remote attackers to prevent legitimate terminal connections by exhausting the DHCP IP address pool.
OrtaCVSS 5,9İstismar yokEPSS %1dji · spark firmware27 Mar 2023
- GHSA-hx53-jchx-cr5223İzleyin
Symfony2 improper IP based access control
OrtaCVSS 5,9İstismar yokPackagist · symfony/symfony30 May 2024
- CVE-2024-3276516İzleyin
A vulnerability has been reported to affect Network & Virtual Switch.
OrtaCVSS 4,2İstismar yokEPSS %0qnap · qts12 Ağu 2024
- CVE-2026-8648513İzleyin
In JetBrains YouTrack before 2026.2.18634 iP spoofing via HTTP headers allowed forged Bitbucket webhooks
DüşükCVSS 3,3İstismar yokEPSS %0jetbrains · youtrack7 Eyl 2026