VYPR

CWE-306

Missing Authentication for Critical Function

BaseDraftLikelihood: High

Description

The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-12 · CAPEC-166 · CAPEC-216 · CAPEC-36 · CAPEC-62

CVEs mapped to this weakness (3,362)

page 136 of 169
  • CVE-2021-41157MedOct 26, 2021
    risk 0.35cvss 5.3epss 0.02

    FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. By default, SIP requests of the type SUBSCRIBE are not authenticated in the affected versions of…

  • CVE-2021-41976MedOct 8, 2021
    risk 0.35cvss 5.3epss 0.01

    Tad Uploader edit book list function is vulnerable to authorization bypass, thus remote attackers can use the function to amend the folder names in the book list without logging in.

  • CVE-2021-41568MedOct 8, 2021
    risk 0.35cvss 5.3epss 0.01

    Tad Web is vulnerable to authorization bypass, thus remote attackers can exploit the vulnerability to use the original function of viewing bulletin boards and uploading files in the system.

  • CVE-2019-10941MedSep 14, 2021
    risk 0.35cvss 5.3epss 0.01

    A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authentication for functionality that requires administrative user identity could allow an attacker to obtain encoded system configuration backup files. This is only possible through network…

  • CVE-2021-27668MedAug 31, 2021
    risk 0.35cvss 5.3epss 0.01

    HashiCorp Vault Enterprise 0.9.2 through 1.6.2 allowed the read of license metadata from DR secondaries without authentication. Fixed in 1.6.3.

  • CVE-2020-21936MedJul 21, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue in HNAP1/GetMultipleHNAPs of Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n allows attackers to access the components GetStationSettings, GetWebsiteFilterSettings and GetNetworkSettings without authentication.

  • CVE-2021-20107MedJun 30, 2021
    risk 0.35cvss 5.4epss 0.01

    There exists an unauthenticated BLE Interface in Sloan SmartFaucets including Optima EAF, Optima ETF/EBF, BASYS EFX, and Flushometers including SOLIS. The vulnerability allows for unauthenticated kinetic effects and information disclosure on the faucets. It is possible to use…

  • CVE-2020-20472MedJun 21, 2021
    risk 0.35cvss 5.3epss 0.01

    White Shark System (WSS) 1.3.2 has a sensitive information disclosure vulnerability. The if_get_addbook.php file does not have an authentication operation. Remote attackers can obtain username information for all users of the current site.

  • CVE-2021-32659MedJun 16, 2021
    risk 0.35cvss 6.5epss 0.01

    Matrix-appservice-bridge is the bridging service for the Matrix communication program's application services. In versions 2.6.0 and earlier, if a bridge has room upgrade handling turned on in the configuration (the `roomUpgradeOpts` key when instantiating a new `Bridge`…

  • CVE-2020-25634MedMay 26, 2021
    risk 0.35cvss 5.4epss 0.01

    A flaw was found in Red Hat 3scale’s API docs URL, where it is accessible without credentials. This flaw allows an attacker to view sensitive information or modify service APIs. Versions before 3scale-2.10.0-ER1 are affected.

  • CVE-2021-27571MedMay 7, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can retrieve recently used and running applications, their icons, and their file paths. This information is sent in cleartext and is not protected by any authentication logic.

  • CVE-2021-27570MedMay 7, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in Emote Remote Mouse through 3.015. Attackers can close any running process by sending the process name in a specially crafted packet. This information is sent in cleartext and is not protected by any authentication logic.

  • CVE-2021-27569MedMay 7, 2021
    risk 0.35cvss 5.3epss 0.01

    An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can maximize or minimize the window of a running process by sending the process name in a crafted packet. This information is sent in cleartext and is not protected by any authentication logic.

  • CVE-2021-24219MedApr 12, 2021
    risk 0.35cvss 5.3epss 0.02

    The Thrive Optimize WordPress plugin before 1.4.13.3, Thrive Comments WordPress plugin before 1.4.15.3, Thrive Headline Optimizer WordPress plugin before 1.3.7.3, Thrive Leads WordPress plugin before 2.3.9.4, Thrive Ultimatum WordPress plugin before 2.3.9.4, Thrive Quiz Builder…

  • CVE-2021-20067MedFeb 16, 2021
    risk 0.35cvss 5.3epss 0.01

    Racom's MIDGE Firmware 4.4.40.105 contains an issue that allows attackers to view sensitive syslog events without authentication.

  • CVE-2021-22850MedJan 19, 2021
    risk 0.35cvss 5.3epss 0.01

    HGiga EIP product lacks ineffective access control in certain pages that allow attackers to access database or perform privileged functions.

  • CVE-2020-9143MedJan 13, 2021
    risk 0.35cvss 5.3epss 0.01

    There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability may lead to low-sensitive information exposure.

  • CVE-2020-5022MedJan 8, 2021
    risk 0.35cvss 5.3epss 0.01

    IBM Spectrum Protect Plus 10.1.0 through 10.1.6 may allow unauthenticated and unauthorized access to VDAP proxy which can result in an attacker obtaining information they are not authorized to access. IBM X-Force ID: 193658.

  • CVE-2020-29138MedNov 27, 2020
    risk 0.35cvss 5.3epss 0.01

    Incorrect Access Control in the configuration backup path in SAGEMCOM F@ST3486 NET DOCSIS 3.0, software NET_4.109.0, allows remote unauthenticated users to download the router configuration file via the /backupsettings.conf URI, when any valid session is running.

  • CVE-2020-13289MedSep 14, 2020
    risk 0.35cvss 5.4epss 0.01

    A vulnerability was discovered in GitLab versions before 13.1.10, 13.2.8 and 13.3.4. In certain cases an invalid username could be accepted when 2FA is activated.