CWE-303 관련 취약점
같은 약점 유형으로 분류된 취약점입니다. CWE 는 "무엇을 잘못했는가" 의 분류이고, 제품을 가리지 않고 같은 실수가 반복됩니다.
CWE-303 — 주요 취약점
악용이 확인된 것을 먼저 보여줍니다.
● 실제 악용이 확인됨CVE-2024-7593Incorrect implementation of an authentication algorithm in Ivanti vTM other than versions 22.2R1 or …100.0%심각9.8● 랜섬웨어 캠페인에 사용됨CVE-2023-29357Microsoft SharePoint Server Elevation of Privilege Vulnerability100.0%심각9.8CVE-2026-3869CWE-303 : Incorrect Implementation of Authentication Algorithm vulnerability exists that could cause…0.5%심각9.2CVE-2026-73458On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD)…0.4%심각9.2CVE-2026-73444On affected platforms running Arista EOS with VRRPv2 IP Authentication Header (IP-AH) authentication…0.3%보통5.3CVE-2026-93394A flaw in libmongoc's SCRAM authentication implementation caused the client to continue the authenti…0.3%보통6.3CVE-2026-92873Pgpool-II contains an incorrect implementation of an authentication algorithm, which may allow an un…0.3%보통6.9CVE-2026-77244MCP Atlassian is a Model Context Protocol (MCP) server for Atlassian products (Confluence and Jira).…0.3%심각10.0
전체 목록
13건
CVE-2026-101878Bitwarden Server 2025.6.0 before 2026.5.0 declares the @ExternalId parameter of the User_ReadBySsoUserOrganiza…0.3%높음7.7
CVE-2026-9854A vulnerability exists in SYS600 RBAC mechanism where users having access to the engineering tools could eleva…0.1%높음8.5
CVE-2026-9853A vulnerability exists in SYS600 which allows any user authenticated to the operating system of the server hos…0.1%높음8.5
CVE-2026-15688Incorrect Implementation of Authentication Algorithm Vulnerability in Mitsubishi Electric GX Works3 and Motion…0.1%심각9.2
CVE-2026-78629The Okta Hyperdrive agent plugin returns a success response without a signed SAML assertion when the organizat…0.1%보통5.6
이 원장은 전체 CVE 가 아닙니다. NVD 에는 30만 건이 넘습니다. 여기 있는 것은 ① 악용이 확인된 것 ② 최근 공개된 것 ③ 국산 SW 관련 ④ KISA 권고에 등장한 것입니다. 무엇을 담았는지 밝히지 않으면 "없다" 를 "안전하다" 로 읽게 됩니다.