Vulnerabilities (CVE)

Filtered by CWE-287
Total 3303 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-1442 1 Ericsson 1 Hm220dp Adsl Modem 2024-02-04 7.5 HIGH N/A
The web administration page for the Ericsson HM220dp ADSL modem does not require authentication, which could allow remote attackers to gain access from the LAN side.
CVE-2003-1433 1 Epic Games 1 Unreal Engine 2024-02-04 4.3 MEDIUM N/A
Epic Games Unreal Engine 226f through 436 does not validate the challenge key, which allows remote attackers to exhaust the player limit by joining the game multiple times.
CVE-2023-50934 1 Ibm 1 Powersc 2024-02-02 N/A 5.3 MEDIUM
IBM PowerSC 1.3, 2.0, and 2.1 uses single-factor authentication which can lead to unnecessary risk of compromise when compared with the benefits of a dual-factor authentication scheme. IBM X-Force ID: 275114.