VYPR

CWE-306

Missing Authentication for Critical Function

BaseDraftLikelihood: High

Description

The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-12 · CAPEC-166 · CAPEC-216 · CAPEC-36 · CAPEC-62

CVEs mapped to this weakness (2,961)

page 148 of 149
  • CVE-2023-30612MedApr 19, 2023
    risk 0.00cvss 4.0epss 0.00

    Cloud hypervisor is a Virtual Machine Monitor for Cloud workloads. This vulnerability allows users to close arbitrary open file descriptors in the Cloud Hypervisor process via sending malicious HTTP request through the HTTP API socket. As a result, the Cloud Hypervisor process…

  • CVE-2022-44216HigFeb 20, 2023
    risk 0.00cvss 7.5epss 0.01

    Gnuboard 5.5.4 and 5.5.5 is vulnerable to Insecure Permissions. An attacker can change password of all users without knowing victim's original password.

  • CVE-2023-0919HigFeb 19, 2023
    risk 0.00cvss 8.1epss 0.00

    Missing Authentication for Critical Function in GitHub repository kareadita/kavita prior to 0.7.0.

  • CVE-2022-31176HigSep 2, 2022
    risk 0.00cvss 8.3epss 0.01

    Grafana Image Renderer is a Grafana backend plugin that handles rendering of panels & dashboards to PNGs using a headless browser (Chromium/Chrome). An internal security review identified an unauthorized file disclosure vulnerability. It is possible for a malicious user to…

  • CVE-2022-29226CriJun 9, 2022
    risk 0.00cvss 10.0epss 0.01

    Envoy is a cloud-native high-performance proxy. In versions prior to 1.22.1 the OAuth filter implementation does not include a mechanism for validating access tokens, so by design when the HMAC signed cookie is missing a full authentication flow should be triggered. However, the…

  • CVE-2022-24829HigApr 11, 2022
    risk 0.00cvss 8.1epss 0.01

    Garden is an automation platform for Kubernetes development and testing. In versions prior to 0.12.39 multiple endpoints did not require authentication. In some operating modes this allows for an attacker to gain access to the application erroneously. The configuration is leaked…

  • CVE-2022-23220HigJan 21, 2022
    risk 0.00cvss 7.8epss 0.01

    USBView 2.1 before 2.2 allows some local users (e.g., ones logged in via SSH) to execute arbitrary code as root because certain Polkit settings (e.g., allow_any=yes) for pkexec disable the authentication requirement. Code execution can, for example, use the --gtk-module option.…

  • CVE-2021-41157MedOct 26, 2021
    risk 0.00cvss 5.3epss 0.02

    FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. By default, SIP requests of the type SUBSCRIBE are not authenticated in the affected versions of…

  • CVE-2021-32800HigSep 7, 2021
    risk 0.00cvss 8.1epss 0.02

    Nextcloud server is an open source, self hosted personal cloud. In affected versions an attacker is able to bypass Two Factor Authentication in Nextcloud. Thus knowledge of a password, or access to a WebAuthN trusted device of a user was sufficient to gain access to an account.…

  • CVE-2021-37697HigAug 11, 2021
    risk 0.00cvss 7.1epss 0.01

    tmerc-cogs are a collection of open source plugins for the Red Discord bot. A vulnerability has been found in the code that allows any user to access sensitive information by crafting a specific membership event message. Issue is patched in commit…

  • CVE-2021-37696HigAug 11, 2021
    risk 0.00cvss 7.1epss 0.01

    tmerc-cogs are a collection of open source plugins for the Red Discord bot. A vulnerability has been found in the code that allows any user to access sensitive information by crafting a specific MassDM message. Issue is patched in commit 92325be650a6c17940cc52611797533ed95dbbe1.…

  • CVE-2021-32794MedJul 26, 2021
    risk 0.00cvss 6.8epss 0.01

    ArchiSteamFarm is a C# application with primary purpose of idling Steam cards from multiple accounts simultaneously. Due to a bug in ASF code `POST /Api/ASF` ASF API endpoint responsible for updating global ASF config incorrectly removed `IPCPassword` from the resulting config…

  • CVE-2021-32700CriJun 22, 2021
    risk 0.00cvss 9.1epss 0.01

    Ballerina is an open source programming language and platform for cloud application programmers. Ballerina versions 1.2.x and SL releases up to alpha 3 have a potential for a supply chain attack via MiTM against users. Http connections did not make use of TLS and certificate…

  • CVE-2021-28122CriMar 10, 2021
    risk 0.00cvss 9.8epss 0.04

    A request-validation issue was discovered in Open5GS 2.1.3 through 2.2.x before 2.2.1. The WebUI component allows an unauthenticated user to use a crafted HTTP API request to create, read, update, or delete entries in the subscriber database. For example, new administrative…

  • CVE-2020-27985HigNov 23, 2020
    risk 0.00cvss 7.8epss 0.01

    Security Onion v2 prior to 2.3.10 has an incorrect sudo configuration, which allows the administrative user to obtain root access without using the sudo password by editing and executing /home//SecurityOnion/setup/so-setup.

  • CVE-2019-20529HigMar 18, 2020
    risk 0.00cvss 7.5epss 0.01

    In core/doctype/prepared_report/prepared_report.py in Frappe 11 and 12, data files generated with Prepared Report were being stored as public files (no authentication is required to access; having a link is sufficient) instead of private files.

  • CVE-2019-12105HigSep 10, 2019
    risk 0.00cvss 8.2epss 0.02

    In Supervisor through 4.0.2, an unauthenticated user can read log files or restart a service. Note: The maintainer responded that the affected component, inet_http_server, is not enabled by default but if the user enables it and does not set a password, Supervisor logs a warning…

  • CVE-2017-2638MedJul 16, 2018
    risk 0.00cvss 6.5epss 0.02

    It was found that the REST API in Infinispan before version 9.0.0 did not properly enforce auth constraints. An attacker could use this vulnerability to read or modify data in the default cache or a known cache name.

  • CVE-2014-9197Jan 27, 2015
    risk 0.00cvss epss 0.02

    The Schneider Electric ETG3000 FactoryCast HMI Gateway with firmware before 1.60 IR 04 stores rde.jar under the web root with insufficient access control, which allows remote attackers to obtain sensitive setup and configuration information via a direct request.

  • CVE-2014-2590Apr 1, 2014
    risk 0.00cvss epss 0.02

    The web management interface in Siemens RuggedCom ROS before 3.11, ROS 3.11 before 3.11.5 for RS950G, ROS 3.12, and ROS 4.0 for RSG2488 allows remote attackers to cause a denial of service (interface outage) via crafted HTTP packets.