VYPR

CWE-306

Missing Authentication for Critical Function

BaseDraftLikelihood: High

Description

The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.

Hierarchy (View 1000)

Parents

Related attack patterns (CAPEC)

CAPEC-12 · CAPEC-166 · CAPEC-216 · CAPEC-36 · CAPEC-62

CVEs mapped to this weakness (3,362)

page 93 of 169
  • CVE-2024-13173HigJan 8, 2025
    risk 0.49cvss 7.5epss 0.00

    The health module has insufficient restrictions on loading URLs, which may lead to some information leakage.

  • CVE-2024-53623HigNov 29, 2024
    risk 0.49cvss 7.5epss 0.00

    Incorrect access control in the component l_0_0.xml of TP-Link ARCHER-C7 v5 allows attackers to access sensitive information.

  • CVE-2024-50589HigNov 8, 2024
    risk 0.49cvss 7.5epss 0.01

    An unauthenticated attacker with access to the local network of the medical office can query an unprotected Fast Healthcare Interoperability Resources (FHIR) API to get access to sensitive electronic health records (EHR).

  • CVE-2024-48953HigNov 7, 2024
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in Logpoint before 7.5.0. Endpoints for creating, editing, or deleting third-party authentication modules lacked proper authorization checks. This allowed unauthenticated users to register their own authentication plugins in Logpoint, resulting in…

  • CVE-2024-48950HigNov 7, 2024
    risk 0.49cvss 7.5epss 0.00

    An issue was discovered in Logpoint before 7.5.0. An endpoint used by Distributed Logpoint Setup was exposed, allowing unauthenticated attackers to bypass CSRF protections and authentication.

  • CVE-2024-5749HigOct 15, 2024
    risk 0.49cvss 7.5epss 0.01

    Certain HP DesignJet products may be vulnerable to credential reflection which allow viewing SMTP server credentials.

  • CVE-2024-45276HigOct 15, 2024
    risk 0.49cvss 7.5epss 0.01

    An unauthenticated remote attacker can get read access to files in the "/tmp" directory due to missing authentication.

  • CVE-2024-48791HigOct 14, 2024
    risk 0.49cvss 7.5epss 0.00

    An issue in Plug n Play Camera com.starvedia.mCamView.zwave 5.5.1 allows a remote attacker to obtain sensitive information via the firmware update process

  • CVE-2024-48777HigOct 11, 2024
    risk 0.49cvss 7.5epss 0.00

    LEDVANCE com.ledvance.smartplus.eu 2.1.10 allows a remote attacker to obtain sensitive information via the firmware update process.

  • CVE-2024-48776HigOct 11, 2024
    risk 0.49cvss 7.5epss 0.00

    An issue in Shelly com.home.shelly 1.0.4 allows a remote attacker to obtain sensitive information via the firmware update process

  • CVE-2024-48775HigOct 11, 2024
    risk 0.49cvss 7.5epss 0.00

    An issue in Plug n Play Camera com.ezset.delaney 1.2.0 allows a remote attacker to obtain sensitive information via the firmware update process.

  • CVE-2024-48774HigOct 11, 2024
    risk 0.49cvss 7.5epss 0.00

    An issue in Fermax Asia Pacific Pte Ltd com.fermax.vida 2.4.6 allows a remote attacker to obtain sensitve information via the firmware update process.

  • CVE-2024-48773HigOct 11, 2024
    risk 0.49cvss 7.5epss 0.00

    An issue in WoFit v.7.2.3 allows a remote attacker to obtain sensitive information via the firmware update process

  • CVE-2024-48771HigOct 11, 2024
    risk 0.49cvss 7.5epss 0.00

    An issue in almando GmbH Almando Play APP (com.almando.play) 1.8.2 allows a remote attacker to obtain sensitive information via the firmware update process

  • CVE-2024-48768HigOct 11, 2024
    risk 0.49cvss 7.5epss 0.01

    An issue in almaodo GmbH appinventor.ai_google.almando_control 2.3.1 allows a remote attacker to obtain sensitive information via the firmware update process

  • CVE-2024-8751HigSep 12, 2024
    risk 0.49cvss 7.5epss 0.01

    A vulnerability allows a remote unauthenticated attacker to modify the prod uct’s IP address over the Sopas ET interface. This can lead to a Denial of Service attack.

  • CVE-2024-43798HigAug 26, 2024
    risk 0.49cvss 8.6epss 0.00

    Chisel is a fast TCP/UDP tunnel, transported over HTTP, secured via SSH. The Chisel server doesn't ever read the documented `AUTH` environment variable used to set credentials, which allows any unauthenticated user to connect, even if credentials were set. Anyone running the…

  • CVE-2024-35124HigAug 13, 2024
    risk 0.49cvss 7.5epss 0.01

    A vulnerability in the combination of the OpenBMC's FW1050.00 through FW1050.10, FW1030.00 through FW1030.50, and FW1020.00 through FW1020.60 default password and session management allow an attacker to gain administrative access to the BMC. IBM X-Force ID: 290674.

  • CVE-2024-21183HigJul 16, 2024
    risk 0.49cvss 7.5epss 0.00

    Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3, IIOP to…

  • CVE-2024-37767HigJul 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Insecure permissions in the component /api/admin/user of 14Finger v1.1 allows attackers to access all user information via a crafted GET request.