VYPR

CWE-306

Missing Authentication for Critical Function

BaseDraftLikelihood: High

Description

The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-12 · CAPEC-166 · CAPEC-216 · CAPEC-36 · CAPEC-62

CVEs mapped to this weakness (2,982)

page 32 of 150
  • CVE-2006-0061CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.02

    xlockmore 5.13 and 5.22 segfaults when using libpam-opensc and returns the underlying xsession. This allows unauthorized users access to the X session.

  • CVE-2019-13547CriOct 31, 2019
    risk 0.64cvss 9.8epss 0.03

    Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. There is an unsecured function that allows anyone who can access the IP address to use the function without authentication.

  • CVE-2019-18465CriOct 31, 2019
    risk 0.64cvss 9.8epss 0.01

    In Progress MOVEit Transfer 11.1 before 11.1.3, a vulnerability has been found that could allow an attacker to sign in without full credentials via the SSH (SFTP) interface. The vulnerability affects only certain SSH (SFTP) configurations, and is applicable only if the MySQL…

  • CVE-2019-15064CriOct 17, 2019
    risk 0.64cvss 9.8epss 0.01

    HiNet GPON firmware version < I040GWR190731 allows an attacker login to device without any authentication.

  • CVE-2019-15940CriOct 1, 2019
    risk 0.64cvss 9.8epss 0.02

    Victure PC530 devices allow unauthenticated TELNET access as root.

  • CVE-2019-15068CriSep 25, 2019
    risk 0.64cvss 9.8epss 0.02

    A broken access control vulnerability in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7.9 allows an attacker to get/reset administrator’s password without any authentication.

  • CVE-2019-5504CriSep 24, 2019
    risk 0.64cvss 9.8epss 0.02

    ONTAP Select Deploy administration utility versions 2.12 & 2.12.1 ship with an HTTP service bound to the network allowing unauthenticated remote attackers to perform administrative actions.

  • CVE-2019-15896CriSep 10, 2019
    risk 0.64cvss 9.8epss 0.07

    An issue was discovered in the LifterLMS plugin through 3.34.5 for WordPress. The upload_import function in the class.llms.admin.import.php script is prone to an unauthenticated options import vulnerability that could lead to privilege escalation (administrator account…

  • CVE-2019-15102CriSep 6, 2019
    risk 0.64cvss 9.8epss 0.04

    An issue was discovered in Tyto Sahi Pro 6.x through 8.0.0. TestRunner_Non_distributed (and distributed end points) does not have any authentication mechanism. This allow an attacker to execute an arbitrary script on the remote Sahi Pro server. There is also a password-protected…

  • CVE-2019-15819CriAug 30, 2019
    risk 0.64cvss 9.8epss 0.03

    The nd-restaurant-reservations plugin before 1.5 for WordPress has no requirement for nd_rst_import_settings_php_function authentication.

  • CVE-2019-13405CriAug 29, 2019
    risk 0.64cvss 9.8epss 0.03

    A broken access control vulnerability found in Advan VD-1 firmware version 230 leads to insecure ADB service. An attacker can send a POST request to cgibin/AdbSetting.cgi to enable ADB without any authentication then take the compromised device as a relay or to install mining…

  • CVE-2019-9585CriAug 14, 2019
    risk 0.64cvss 9.8epss 0.03

    eQ-3 Homematic CCU2 prior to 2.47.10 and CCU3 prior to 3.47.10 JSON API has Improper Access Control for Interface.***Metadata related operations, resulting in the ability to read, set and deletion of Metadata.

  • CVE-2019-1895CriAug 7, 2019
    risk 0.64cvss 9.8epss 0.02

    A vulnerability in the Virtual Network Computing (VNC) console implementation of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to access the VNC console session of an administrative user on an affected device. The…

  • CVE-2019-13983CriJul 19, 2019
    risk 0.64cvss 9.8epss 0.01

    Directus 7 API before 2.2.2 has insufficient anti-automation, as demonstrated by lack of a CAPTCHA in core/Directus/Services/AuthService.php and endpoints/Auth.php.

  • CVE-2019-12468CriJul 10, 2019
    risk 0.64cvss 9.8epss 0.03

    An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.27.0 through 1.32.1. Directly POSTing to Special:ChangeEmail would allow for bypassing re-authentication, allowing for potential account takeover.

  • CVE-2019-10121CriJul 10, 2019
    risk 0.64cvss 9.8epss 0.05

    eQ-3 HomeMatic CCU2 devices before 2.41.8 and CCU3 devices before 3.43.15 use session IDs for authentication but lack authorization checks. An attacker can obtain a session ID via the user authentication dialogue, aka HMCCU-153. This leads to automatic login as admin.

  • CVE-2019-10119CriJul 10, 2019
    risk 0.64cvss 9.8epss 0.02

    eQ-3 HomeMatic CCU2 devices before 2.41.8 and CCU3 devices before 3.43.16 use session IDs for authentication but lack authorization checks. An attacker can obtain a session ID via an invalid login attempt to the RemoteApi account, aka HMCCU-154. This leads to automatic login as…

  • CVE-2019-13131CriJul 1, 2019
    risk 0.64cvss 9.8epss 0.04

    Super Micro SuperDoctor 5, when restrictions are not implemented in agent.cfg, allows remote attackers to execute arbitrary commands via NRPE.

  • CVE-2019-12890CriJun 19, 2019
    risk 0.64cvss 9.8epss 0.06

    RedwoodHQ 2.5.5 does not require any authentication for database operations, which allows remote attackers to create admin users via a con.automationframework users insert_one call.

  • CVE-2019-11523CriJun 6, 2019
    risk 0.64cvss 9.8epss 0.01

    Anviz Global M3 Outdoor RFID Access Control executes any command received from any source. No authentication/encryption is done. Attackers can fully interact with the device: for example, send the "open door" command, download the users list (which includes RFID codes and…