CWE-603 · 25 kayıt
Use of Client-Side Authentication
Bu sınıftaki CVE’ler
25 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
61Bu hafta | CVE-2022-3218Silahlaştırılmış | Necta WiFi Mouse (Mouse Server) client-side authentication bypassnecta · wifi mouse server · CWE-603 | Kritik9,8 | — | %74,0 | 19 Eyl 2022 |
40Planlayın | CVE-2017-7909İstismar yok | A Use of Client-Side Authentication issue was discovered in Advantech B+B SmartWorx MESR901 firmware versions 1.5.2 and prior.advantech b\+b smartworx · mesr901 firmware · CWE-603 | Kritik9,8 | — | %2,6 | 5 May 2017 |
39İzleyin | CVE-2022-33139İstismar yok | A vulnerability has been identified in Cerberus DMS (All versions), Desigo CC (All versions), Desigo CC Compact (All versions), SIMATIC WinCsiemens · cerberus dms · CWE-603 | Kritik9,8 | — | %1,2 | 21 Haz 2022 |
39İzleyin | CVE-2021-43355İstismar yok | Fresenius Kabi Agilia Connect Infusion System use of client side authenticationfresenius-kabi · agilia partner maintenance software · CWE-603 | Kritik9,8 | — | %1,0 | 21 Oca 2022 |
39İzleyin | CVE-2025-62650İstismar yok | The Restaurant Brands International (RBI) assistant platform through 2025-09-06 relies on client-side authentication for use of the diagnostrbi · restaurant brands international assistant · CWE-603 | Kritik9,9 | — | %0,5 | 17 Eki 2025 |
37İzleyin | CVE-2026-71187İstismar yok | Ebyte NA111-M Use of Client-Side Authenticationebyte · ebyte na111-m firmware · CWE-603 | Kritik9,3 | — | %0,8 | 27 Ağu 2026 |
37İzleyin | CVE-2026-1363İstismar yok | JNC|IAQS and I6 - Client-Side Enforcement of Server-Side Securityjnc · iaqs · CWE-603 | Kritik9,3 | — | %0,6 | 23 Oca 2026 |
37İzleyin | CVE-2024-39375İstismar yok | Use of Client-Side Authentication in TELSAT marKoni FM Transmittermarkoni · markoni-d \(compact\) firmware · CWE-603 | Kritik9,3 | — | %0,6 | 27 Haz 2024 |
37İzleyin | CVE-2025-12868İstismar yok | CyberTutor|New Site Server - Use of Client-Side Authenticationcybertutor · new site server · CWE-603 | Kritik9,3 | — | %0,5 | 10 Kas 2025 |
37İzleyin | CVE-2025-64119İstismar yok | Nuvation Energy BMS Client-side Authenticationnuvation energy · battery management system · CWE-603 | Kritik9,3 | — | %0,5 | 2 Oca 2026 |
36İzleyin | CVE-2025-30042İstismar yok | Session generation possible with certificate number onlycgm · clininet · CWE-603 | Kritik9,0 | — | %0,1 | 2 Mar 2026 |
35İzleyin | CVE-2020-7591İstismar yok | A vulnerability has been identified in SIPORT MP (All versions < 3.2.1).siemens · siport mp · CWE-603 | Yüksek8,8 | — | %1,5 | 15 Eki 2020 |
34İzleyin | CVE-2026-76945İstismar yok | Ebyte NE2-D11 Use of Client-Side Authenticationebyte · ebyte ne2-d11 firmware · CWE-603 | Yüksek8,7 | — | %0,5 | 27 Ağu 2026 |
34İzleyin | CVE-2026-42098İstismar yok | Authorization Bypass in Sparx Enterprise Architectsparx systems · enterprise architect · CWE-603 | Yüksek8,7 | — | %0,4 | 19 May 2026 |
34İzleyin | CVE-2025-61940İstismar yok | Mirion Medical EC2 Software NMIS BioDose Use of Client-Side Authenticationmirion · biodose\/nmis · CWE-603 | Yüksek8,7 | — | %0,3 | 2 Ara 2025 |
33İzleyin | CVE-2026-40551İstismar yok | Use of Client-Side Authentication in multiple BinSoft productsbinsoft · mpgabinet · CWE-603 | Yüksek8,4 | — | %0,2 | 28 Nis 2026 |
31İzleyin | CVE-2020-6988İstismar yok | Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versionsrockwellautomation · micrologix 1400 a firmware · CWE-603 | Yüksek7,5 | — | %4,0 | 16 Mar 2020 |
30İzleyin | CVE-2025-24517İstismar yok | Use of client-side authentication issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions.inaba denki sangyo co., ltd. · choco tei watcher mini (ib-mct001) · CWE-603 | Yüksek7,5 | — | %0,8 | 31 Mar 2025 |
30İzleyin | CVE-2024-28627İstismar yok | An issue in Flipsnack v.18/03/2024 allows a local attacker to obtain sensitive information via the reader.gz.js file.CWE-603 | Yüksek7,5 | — | %0,4 | 23 Nis 2024 |
30İzleyin | CVE-2024-45785İstismar yok | MUSASI version 3 contains an issue with use of client-side authentication.neumann · musasi · CWE-603 | Yüksek7,5 | — | %0,4 | 25 Eki 2024 |
28İzleyin | CVE-2026-66305İstismar yok | Skype for Business Spoofing Vulnerabilitymicrosoft · skype for business server · CWE-603 | Yüksek7,1 | — | %0,5 | 8 Eyl 2026 |
26İzleyin | CVE-2020-27266İstismar yok | In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDansooil · anydana-a firmware · CWE-603 | Orta6,5 | — | %0,6 | 19 Oca 2021 |
24İzleyin | CVE-2024-52327İstismar yok | ECOVACS lawnmower and vacuum cloud service live video PIN bypassecovacs · home · CWE-603 | Orta6,0 | — | %0,5 | 23 Oca 2025 |
23İzleyin | CVE-2025-62649İstismar yok | The Restaurant Brands International (RBI) assistant platform through 2025-09-06 relies on client-side authentication for submission of equiprbi · restaurant brands international assistant · CWE-603 | Orta5,8 | — | %0,5 | 17 Eki 2025 |
17İzleyin | CVE-2026-8830İstismar yok | Keycloak: org.keycloak/keycloak-services: keycloak: policy bypass during webauthn credential registration via client-side javascript manipulationredhat · build of keycloak · CWE-603 | Orta4,3 | — | %0,4 | 19 May 2026 |
- CVE-2022-321861Bu hafta
Necta WiFi Mouse (Mouse Server) client-side authentication bypass
KritikCVSS 9,8SilahlaştırılmışEPSS %74necta · wifi mouse server19 Eyl 2022
- CVE-2017-790940Planlayın
A Use of Client-Side Authentication issue was discovered in Advantech B+B SmartWorx MESR901 firmware versions 1.5.2 and prior.
KritikCVSS 9,8İstismar yokEPSS %3advantech b\+b smartworx · mesr901 firmware5 May 2017
- CVE-2022-3313939İzleyin
A vulnerability has been identified in Cerberus DMS (All versions), Desigo CC (All versions), Desigo CC Compact (All versions), SIMATIC WinC
KritikCVSS 9,8İstismar yokEPSS %1siemens · cerberus dms21 Haz 2022
- CVE-2021-4335539İzleyin
Fresenius Kabi Agilia Connect Infusion System use of client side authentication
KritikCVSS 9,8İstismar yokEPSS %1fresenius-kabi · agilia partner maintenance software21 Oca 2022
- CVE-2025-6265039İzleyin
The Restaurant Brands International (RBI) assistant platform through 2025-09-06 relies on client-side authentication for use of the diagnost
KritikCVSS 9,9İstismar yokEPSS %1rbi · restaurant brands international assistant17 Eki 2025
- CVE-2026-7118737İzleyin
Ebyte NA111-M Use of Client-Side Authentication
KritikCVSS 9,3İstismar yokEPSS %1ebyte · ebyte na111-m firmware27 Ağu 2026
- CVE-2026-136337İzleyin
JNC|IAQS and I6 - Client-Side Enforcement of Server-Side Security
KritikCVSS 9,3İstismar yokEPSS %1jnc · iaqs23 Oca 2026
- CVE-2024-3937537İzleyin
Use of Client-Side Authentication in TELSAT marKoni FM Transmitter
KritikCVSS 9,3İstismar yokEPSS %1markoni · markoni-d \(compact\) firmware27 Haz 2024
- CVE-2025-1286837İzleyin
CyberTutor|New Site Server - Use of Client-Side Authentication
KritikCVSS 9,3İstismar yokEPSS %1cybertutor · new site server10 Kas 2025
- CVE-2025-6411937İzleyin
Nuvation Energy BMS Client-side Authentication
KritikCVSS 9,3İstismar yokEPSS %0nuvation energy · battery management system2 Oca 2026
- CVE-2025-3004236İzleyin
Session generation possible with certificate number only
KritikCVSS 9,0İstismar yokEPSS %0cgm · clininet2 Mar 2026
- CVE-2020-759135İzleyin
A vulnerability has been identified in SIPORT MP (All versions < 3.2.1).
YüksekCVSS 8,8İstismar yokEPSS %1siemens · siport mp15 Eki 2020
- CVE-2026-7694534İzleyin
Ebyte NE2-D11 Use of Client-Side Authentication
YüksekCVSS 8,7İstismar yokEPSS %1ebyte · ebyte ne2-d11 firmware27 Ağu 2026
- CVE-2026-4209834İzleyin
Authorization Bypass in Sparx Enterprise Architect
YüksekCVSS 8,7İstismar yokEPSS %0sparx systems · enterprise architect19 May 2026
- CVE-2025-6194034İzleyin
Mirion Medical EC2 Software NMIS BioDose Use of Client-Side Authentication
YüksekCVSS 8,7İstismar yokEPSS %0mirion · biodose\/nmis2 Ara 2025
- CVE-2026-4055133İzleyin
Use of Client-Side Authentication in multiple BinSoft products
YüksekCVSS 8,4İstismar yokEPSS %0binsoft · mpgabinet28 Nis 2026
- CVE-2020-698831İzleyin
Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Controller, all versions
YüksekCVSS 7,5İstismar yokEPSS %4rockwellautomation · micrologix 1400 a firmware16 Mar 2020
- CVE-2025-2451730İzleyin
Use of client-side authentication issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions.
YüksekCVSS 7,5İstismar yokEPSS %1inaba denki sangyo co., ltd. · choco tei watcher mini (ib-mct001)31 Mar 2025
- CVE-2024-2862730İzleyin
An issue in Flipsnack v.18/03/2024 allows a local attacker to obtain sensitive information via the reader.gz.js file.
YüksekCVSS 7,5İstismar yokEPSS %023 Nis 2024
- CVE-2024-4578530İzleyin
MUSASI version 3 contains an issue with use of client-side authentication.
YüksekCVSS 7,5İstismar yokEPSS %0neumann · musasi25 Eki 2024
- CVE-2026-6630528İzleyin
Skype for Business Spoofing Vulnerability
YüksekCVSS 7,1İstismar yokEPSS %1microsoft · skype for business server8 Eyl 2026
- CVE-2020-2726626İzleyin
In SOOIL Developments Co., Ltd Diabecare RS, AnyDana-i and AnyDana-A, a client-side control vulnerability in the insulin pump and its AnyDan
OrtaCVSS 6,5İstismar yokEPSS %1sooil · anydana-a firmware19 Oca 2021
- CVE-2024-5232724İzleyin
ECOVACS lawnmower and vacuum cloud service live video PIN bypass
OrtaCVSS 6,0İstismar yokEPSS %0ecovacs · home23 Oca 2025
- CVE-2025-6264923İzleyin
The Restaurant Brands International (RBI) assistant platform through 2025-09-06 relies on client-side authentication for submission of equip
OrtaCVSS 5,8İstismar yokEPSS %1rbi · restaurant brands international assistant17 Eki 2025
- CVE-2026-883017İzleyin
Keycloak: org.keycloak/keycloak-services: keycloak: policy bypass during webauthn credential registration via client-side javascript manipulation
OrtaCVSS 4,3İstismar yokEPSS %0redhat · build of keycloak19 May 2026