CWE-306— Missing Authentication for Critical Function
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.— MITRE CWE catalog
3,492 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-306page 16 of 70
- CVE-2023-22072CRITICALCVSS 9.8EG 9.82023-10-17
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). The supported version that is affected is 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access…
- CVE-2023-22069CRITICALCVSS 9.8EG 9.82023-10-17
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with …
- CVE-2023-44116CRITICALCVSS 9.8EG 9.82023-10-11
Vulnerability of access permissions not being strictly verified in the APPWidget module.Successful exploitation of this vulnerability may cause some apps to run without being authorized.
- CVE-2023-43644CRITICALCVSS 9.8EG 9.82023-09-25
Sing-box is an open source proxy system. Affected versions are subject to an authentication bypass when specially crafted requests are sent to sing-box. This affects all SOCKS5 inbounds with user authentication and an attacker may be able …
- CVE-2023-38186CRITICALCVSS 9.8EG 9.82023-08-08
Windows Mobile Device Management Elevation of Privilege Vulnerability
- CVE-2023-37483CRITICALCVSS 9.8EG 9.82023-08-08
SAP PowerDesigner - version 16.7, has improper access control which might allow an unauthenticated attacker to run arbitrary queries against the back-end database via Proxy.
- CVE-2023-36669CRITICALCVSS 9.8EG 9.82023-07-18
Missing Authentication for a Critical Function within the Kratos NGC Indoor Unit (IDU) before 11.4 allows remote attackers to obtain arbitrary control of the IDU/ODU system. Any attacker with layer-3 network access to the IDU can impersona…
- CVE-2023-37265CRITICALCVSS 9.8EG 9.82023-07-17
CasaOS is an open-source Personal Cloud system. Due to a lack of IP address verification an unauthenticated attackers can execute arbitrary commands as `root` on CasaOS instances. The problem was addressed by improving the detection of cli…
- CVE-2023-2834CRITICALCVSS 9.8EG 9.82023-06-30
The BookIt plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.3.7. This is due to insufficient verification on the user being supplied during booking an appointment through the plugin. This make…
- CVE-2023-35830CRITICALCVSS 9.8EG 9.82023-06-29
STW (aka Sensor-Technik Wiedemann) TCG-4 Connectivity Module DeploymentPackage_v3.03r0-Impala and DeploymentPackage_v3.04r2-Jellyfish and TCG-4lite Connectivity Module DeploymentPackage_v3.04r2-Jellyfish allow an attacker to gain full remo…
- CVE-2023-35854CRITICALCVSS 9.8EG 9.82023-06-20
Zoho ManageEngine ADSelfService Plus through 6113 has an authentication bypass that can be exploited to steal the domain controller session token for identity spoofing, thereby achieving the privileges of the domain controller administrato…
- CVE-2023-31411CRITICALCVSS 9.8EG 9.82023-06-19
A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication. The lack of authentication in the API allows the attacker to potentially compromise the functionality…
- CVE-2023-27396CRITICALCVSS 9.8EG 9.82023-06-19
FINS (Factory Interface Network Service) is a message communication protocol, which is designed to be used in closed FA (Factory Automation) networks, and is used in FA networks composed of OMRON products. Multiple OMRON products that impl…
- CVE-2023-30762CRITICALCVSS 9.8EG 9.82023-06-13
Improper authentication vulnerability exists in KB-AHR series and KB-IRIP series. If this vulnerability is exploited, an arbitrary OS command may be executed on the product or the device settings may be altered. Affected products and versi…
- CVE-2023-33553CRITICALCVSS 9.8EG 9.82023-06-07
An issue in Planet Technologies WDRT-1800AX v1.01-CP21 allows attackers to bypass authentication and escalate privileges to root via manipulation of the LoginStatus cookie.
- CVE-2020-36724CRITICALCVSS 9.8EG 9.82023-06-07
The Wordable plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.1.1. This is due to the use of a user supplied hashing algorithm passed to the hash_hmac() function and the use of a loose compari…
- CVE-2020-36713CRITICALCVSS 9.8EG 9.82023-06-07
The MStore API plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.1.5. This is due to unrestricted access to the 'register' and 'update_user_profile' routes. This makes it possible for unauthent…
- CVE-2023-30604CRITICALCVSS 9.8EG 9.82023-06-02
It is identified a vulnerability of insufficient authentication in the system configuration interface of Hitron Technologies CODA-5310. An unauthorized remote attacker can exploit this vulnerability to access system configuration interface…
- CVE-2023-2704CRITICALCVSS 9.8EG 9.82023-05-19
The BP Social Connect plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.5. This is due to insufficient verification on the user being supplied during a Facebook login through the plugin. This m…
- CVE-2023-1096CRITICALCVSS 9.8EG 9.82023-05-12
SnapCenter versions 4.7 prior to 4.7P2 and 4.8 prior to 4.8P1 are susceptible to a vulnerability which could allow a remote unauthenticated attacker to gain access as an admin user.
- CVE-2023-20126CRITICALCVSS 9.8EG 9.82023-05-04
A vulnerability in the web-based management interface of Cisco SPA112 2-Port Phone Adapters could allow an unauthenticated, remote attacker to execute arbitrary code on an affected device. This vulnerability is due to a missing authenticat…
- CVE-2023-28697CRITICALCVSS 9.8EG 9.82023-04-27
Moxa MiiNePort E1 has a vulnerability of insufficient access control. An unauthenticated remote user can exploit this vulnerability to perform arbitrary system operation or disrupt service.
- CVE-2023-2231CRITICALCVSS 9.8EG 9.82023-04-21
A vulnerability, which was classified as critical, was found in MAXTECH MAX-G866ac 0.4.1_TBRO_20160314. This affects an unknown part of the component Remote Management. The manipulation leads to missing authentication. It is possible to in…
- CVE-2023-23451CRITICALCVSS 9.8EG 9.82023-04-19
The Flexi Classic and Flexi Soft Gateways SICK UE410-EN3 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK UE410-EN1 FLEXI ETHERNET GATEW. with serial number <=2311xxxx all Firmware versions, SICK UE410-EN3S04…
- CVE-2023-29411CRITICALCVSS 9.8EG 9.82023-04-18
A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow changes to administrative credentials, leading to potential remote code execution without requiring prior authentication on the Java RMI interfa…
- CVE-2022-41331CRITICALCVSS 9.8EG 9.82023-04-11
A missing authentication for critical function vulnerability [CWE-306] in FortiPresence infrastructure server before version 1.2.1 allows a remote, unauthenticated attacker to access the Redis and MongoDB instances via crafted authenticati…
- CVE-2022-36983CRITICALCVSS 9.8EG 9.82023-03-29
This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche. Authentication is not required to exploit this vulnerability. The specific flaw exists within the SetSettings class. The iss…
- CVE-2023-28326CRITICALCVSS 9.8EG 9.82023-03-28
Vendor: The Apache Software Foundation Versions Affected: Apache OpenMeetings from 2.0.0 before 7.0.0 Description: Attacker can elevate their privileges in any room
- CVE-2023-1140CRITICALCVSS 9.8EG 9.82023-03-27
Delta Electronics InfraSuite Device Master versions prior to 1.0.5 contain a vulnerability that could allow an attacker to achieve unauthenticated remote code execution in the context of an administrator.
- CVE-2023-24838CRITICALCVSS 9.8EG 9.82023-03-27
HGiga PowerStation has a vulnerability of Information Leakage. An unauthenticated remote attacker can exploit this vulnerability to obtain the administrator's credential. This credential can then be used to login PowerStation or Secure She…
- CVE-2023-27060CRITICALCVSS 9.8EG 9.82023-03-22
LightCMS v1.3.7 was discovered to contain a remote code execution (RCE) vulnerability via the image:make function.
- CVE-2023-25589CRITICALCVSS 9.8EG 9.82023-03-22
A vulnerability in the web-based management interface of ClearPass Policy Manager could allow an unauthenticated remote attacker to create arbitrary users on the platform. A successful exploit allows an attacker to achieve total cluster co…
- CVE-2022-45551CRITICALCVSS 9.8EG 9.82023-03-03
An issue discovered in Shenzhen Zhiboton Electronics ZBT WE1626 Router v 21.06.18 allows attackers to escalate privileges via WGET command to the Network Diagnosis endpoint.
- CVE-2022-45140CRITICALCVSS 9.8EG 9.82023-02-27
The configuration backend allows an unauthenticated user to write arbitrary data with root privileges to the storage, which could lead to unauthenticated remote code execution and full system compromise.
- CVE-2022-45138CRITICALCVSS 9.8EG 9.82023-02-27
The configuration backend of the web-based management can be used by unauthenticated users, although only authenticated users should be able to use the API. The vulnerability allows an unauthenticated attacker to read and set several devic…
- CVE-2023-23453CRITICALCVSS 9.8EG 9.82023-02-20
Missing Authentication for Critical Function in SICK FX0-GENT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to achieve arbitrary remote code execution via maliciously crafted RK512 commands to the listener on T…
- CVE-2023-23452CRITICALCVSS 9.8EG 9.82023-02-20
Missing Authentication for Critical Function in SICK FX0-GPNT v3 Firmware Version V3.04 and V3.05 allows an unprivileged remote attacker to achieve arbitrary remote code execution via maliciously crafted RK512 commands to the listener on T…
- CVE-2022-3229CRITICALCVSS 9.8EG 9.82023-02-06
Because the web management interface for Unified Intents' Unified Remote solution does not itself require authentication, a remote, unauthenticated attacker can change or disable authentication requirements for the Unified Remote protocol,…
- CVE-2022-42970CRITICALCVSS 9.8EG 9.82023-02-01
A CWE-306: Missing Authentication for Critical Function The software does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources. Affected Products: APC Easy UP…
- CVE-2023-0052CRITICALCVSS 9.8EG 9.82023-01-20
SAUTER Controls Nova 200–220 Series with firmware version 3.3-006 and prior and BACnetstac version 4.2.1 and prior allows the execution of commands without credentials. As Telnet and file transfer protocol (FTP) are the only protocols av…
- CVE-2020-23256CRITICALCVSS 9.8EG 9.82023-01-20
An issue was discovered in Electerm 1.3.22, allows attackers to execute arbitrary code via unverified request to electerms service.
- CVE-2022-46732CRITICALCVSS 9.8EG 9.82023-01-18
Even if the authentication fails for local service authentication, the requested command could still execute regardless of authentication status.
- CVE-2022-43976CRITICALCVSS 9.8EG 9.82023-01-17
An issue was discovered in FC46-WebBridge on GE Grid Solutions MS3000 devices before 3.7.6.25p0_3.2.2.17p0_4.7p0. Direct access to the API is possible on TCP port 8888 via programs located in the cgi-bin folder without any authentication.
- CVE-2022-47377CRITICALCVSS 9.8EG 9.82022-12-16
Password recovery vulnerability in SICK SIM2000ST Partnumber 2086502 with firmware version <1.13.4 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery m…
- CVE-2022-42458CRITICALCVSS 9.8EG 9.82022-12-07
Authentication bypass using an alternate path or channel vulnerability in bingo!CMS version1.7.4.1 and earlier allows a remote unauthenticated attacker to upload an arbitrary file. As a result, an arbitrary script may be executed and/or a …
- CVE-2022-45481CRITICALCVSS 9.8EG 9.82022-12-05
The default configuration of Lazy Mouse does not require a password, allowing remote unauthenticated users to execute arbitrary code with no prior authorization or authentication. CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- CVE-2022-45479CRITICALCVSS 9.8EG 9.82022-12-05
PC Keyboard allows remote unauthenticated users to send instructions to the server to execute arbitrary code without any previous authorization or authentication. CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- CVE-2022-45477CRITICALCVSS 9.8EG 9.82022-12-05
Telepad allows remote unauthenticated users to send instructions to the server to execute arbitrary code without any previous authorization or authentication. CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- CVE-2022-46414CRITICALCVSS 9.8EG 9.82022-12-04
An issue was discovered in Veritas NetBackup Flex Scale through 3.0 and Access Appliance through 8.0.100. Unauthenticated remote command execution can occur via the management portal.
- CVE-2022-45933CRITICALCVSS 9.8EG 9.82022-11-27
KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate files that can be used for authentication as kube-admin. NOTE: the…
Map vulnerabilities like CWE-306 to your infrastructure
EchelonGraph correlates every CVE — across CWE-306 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →