CWE-306— Missing Authentication for Critical Function
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.— MITRE CWE catalog
3,492 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-306page 20 of 70
- CVE-2019-12117CRITICALCVSS 9.8EG 9.82020-03-18
An issue was discovered in ONAP SDC through Dublin. By accessing port 4001 of demo-sdc-sdc-onboarding-be pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arbitrary code inside that pod. All …
- CVE-2019-12116CRITICALCVSS 9.8EG 9.82020-03-18
An issue was discovered in ONAP SDC through Dublin. By accessing port 6000 of demo-sdc-sdc-fe pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arbitrary code inside that pod. All ONAP Operat…
- CVE-2019-12115CRITICALCVSS 9.8EG 9.82020-03-18
An issue was discovered in ONAP SDC through Dublin. By accessing port 4000 of demo-sdc-sdc-be pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arbitrary code inside that pod. All ONAP Operat…
- CVE-2019-12114CRITICALCVSS 9.8EG 9.82020-03-18
An issue was discovered in ONAP HOLMES before Dublin. By accessing port 9202 of dep-holmes-engine-mgmt pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arbitrary code inside that pod. All ON…
- CVE-2020-8598CRITICALCVSS 9.8EG 9.82020-03-18
Trend Micro Apex One (2019), OfficeScan XG and Worry-Free Business Security (9.0, 9.5, 10.0) server contains a vulnerable service DLL file that could allow a remote attacker to execute arbitrary code on affected installations with SYSTEM l…
- CVE-2020-6198CRITICALCVSS 9.8EG 9.82020-03-10
SAP Solution Manager (Diagnostics Agent), version 720, allows unencrypted connections from unauthenticated sources. This allows an attacker to control all remote functions on the Agent due to Missing Authentication Check.
- CVE-2020-5328CRITICALCVSS 9.8EG 9.82020-03-06
Dell EMC Isilon OneFS versions prior to 8.2.0 contain an unauthorized access vulnerability due to a lack of thorough authorization checks when SyncIQ is licensed, but encrypted syncs are not marked as required. When this happens, loss of c…
- CVE-2020-8636CRITICALCVSS 9.8EG 9.82020-02-06
An issue was discovered in OpServices OpMon 9.3.2 that allows Remote Code Execution .
- CVE-2014-3449CRITICALCVSS 9.8EG 9.82020-01-09
BSS Continuity CMS 4.2.22640.0 has an Authentication Bypass vulnerability
- CVE-2020-6170CRITICALCVSS 9.8EG 9.82020-01-08
An authentication bypass vulnerability on Genexis Platinum-4410 v2.1 P4410-V2 1.28 devices allows attackers to obtain cleartext credentials from the HTML source code of the cgi-bin/index2.asp URI.
- CVE-2019-17146CRITICALCVSS 9.8EG 9.82020-01-07
This vulnerability allows remote attackers to execute arbitrary code on affected installations of D-Link DCS-960L v1.07.102. Authentication is not required to exploit this vulnerability. The specific flaw exists within the HNAP service, wh…
- CVE-2019-18572CRITICALCVSS 9.8EG 9.82019-12-18
The RSA Identity Governance and Lifecycle and RSA Via Lifecycle and Governance products prior to 7.1.1 P03 contain an Improper Authentication vulnerability. A Java JMX agent running on the remote host is configured with plain text password…
- CVE-2019-18339CRITICALCVSS 9.8EG 9.82019-12-12
A vulnerability has been identified in SiNVR/SiVMS Video Server (All versions < V5.0.0). The HTTP service (default port 5401/tcp) of the SiVMS/SiNVR Video Server contains an authentication bypass vulnerability, even when properly configure…
- CVE-2019-18284CRITICALCVSS 9.8EG 9.82019-12-12
A vulnerability has been identified in SPPA-T3000 Application Server (All versions < Service Pack R8.2 SP2). The AdminService is available without authentication on the Application Server. An attacker can use methods exposed via this inter…
- CVE-2019-15932CRITICALCVSS 9.8EG 9.82019-12-12
Intesync Solismed 3.3sp has Incorrect Access Control.
- CVE-2019-12503CRITICALCVSS 9.8EG 9.82019-12-02
Due to unencrypted and unauthenticated data communication, the wireless barcode scanner Inateck BCST-60 is prone to keystroke injection attacks. Thus, an attacker is able to send arbitrary keystrokes to a victim's computer system, e.g., to…
- CVE-2019-12392CRITICALCVSS 9.8EG 9.82019-12-02
Anviz access control devices allow remote attackers to issue commands without a password.
- CVE-2019-18939CRITICALCVSS 9.8EG 9.82019-11-14
eQ-3 Homematic CCU2 2.47.20 and CCU3 3.47.18 with the HM-Print AddOn through 1.2a installed allow Remote Code Execution by unauthenticated attackers with access to the web interface via the exec.cgi and exec1.cgi scripts, which execute TCL…
- CVE-2019-18938CRITICALCVSS 9.8EG 9.82019-11-14
eQ-3 Homematic CCU2 2.47.20 and CCU3 3.47.18 with the E-Mail AddOn through 1.6.8.c installed allow Remote Code Execution by unauthenticated attackers with access to the web interface via the save.cgi script for payload upload and the testt…
- CVE-2019-18937CRITICALCVSS 9.8EG 9.82019-11-14
eQ-3 Homematic CCU2 2.47.20 and CCU3 3.47.18 with the Script Parser AddOn through 1.8 installed allow Remote Code Execution by unauthenticated attackers with access to the web interface via the exec.cgi script, which executes TCL script co…
- CVE-2019-18925CRITICALCVSS 9.8EG 9.82019-11-12
Systematic IRIS WebForms 5.4 and its functionalities can be accessed and used without any form of authentication.
- CVE-2006-0062CRITICALCVSS 9.8EG 9.82019-11-06
xlockmore 5.13 allows potential xlock bypass when FVWM switches to the same virtual desktop as a new Gaim window.
- CVE-2006-0061CRITICALCVSS 9.8EG 9.82019-11-06
xlockmore 5.13 and 5.22 segfaults when using libpam-opensc and returns the underlying xsession. This allows unauthorized users access to the X session.
- CVE-2019-13547CRITICALCVSS 9.8EG 9.82019-10-31
Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. There is an unsecured function that allows anyone who can access the IP address to use the function without authentication.
- CVE-2019-18465CRITICALCVSS 9.8EG 9.82019-10-31
In Progress MOVEit Transfer 11.1 before 11.1.3, a vulnerability has been found that could allow an attacker to sign in without full credentials via the SSH (SFTP) interface. The vulnerability affects only certain SSH (SFTP) configurations,…
- CVE-2019-15064CRITICALCVSS 9.8EG 9.82019-10-17
HiNet GPON firmware version < I040GWR190731 allows an attacker login to device without any authentication.
- CVE-2019-17506CRITICALCVSS 9.8EG 9.82019-10-11
There are some web interfaces without authentication requirements on D-Link DIR-868L B1-2.03 and DIR-817LW A1-1.04 routers. An attacker can get the router's username and password (and other information) via a DEVICE.ACCOUNT value for SERVI…
- CVE-2019-15940CRITICALCVSS 9.8EG 9.82019-10-01
Victure PC530 devices allow unauthenticated TELNET access as root.
- CVE-2019-15068CRITICALCVSS 9.8EG 9.82019-09-25
A broken access control vulnerability in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7.9 allows an attacker to get/reset administrator’s password without any authentication.
- CVE-2019-5504CRITICALCVSS 9.8EG 9.82019-09-24
ONTAP Select Deploy administration utility versions 2.12 & 2.12.1 ship with an HTTP service bound to the network allowing unauthenticated remote attackers to perform administrative actions.
- CVE-2019-16199CRITICALCVSS 9.8EG 9.82019-09-17
eQ-3 Homematic CCU2 before 2.47.18 and CCU3 before 3.47.18 allow Remote Code Execution by unauthenticated attackers with access to the web interface via an HTTP POST request to certain URLs related to the ReGa core process.
- CVE-2019-15896CRITICALCVSS 9.8EG 9.82019-09-10
An issue was discovered in the LifterLMS plugin through 3.34.5 for WordPress. The upload_import function in the class.llms.admin.import.php script is prone to an unauthenticated options import vulnerability that could lead to privilege esc…
- CVE-2019-15102CRITICALCVSS 9.8EG 9.82019-09-06
An issue was discovered in Tyto Sahi Pro 6.x through 8.0.0. TestRunner_Non_distributed (and distributed end points) does not have any authentication mechanism. This allow an attacker to execute an arbitrary script on the remote Sahi Pro se…
- CVE-2019-15819CRITICALCVSS 9.8EG 9.82019-08-30
The nd-restaurant-reservations plugin before 1.5 for WordPress has no requirement for nd_rst_import_settings_php_function authentication.
- CVE-2019-13405CRITICALCVSS 9.8EG 9.82019-08-29
A broken access control vulnerability found in Advan VD-1 firmware version 230 leads to insecure ADB service. An attacker can send a POST request to cgibin/AdbSetting.cgi to enable ADB without any authentication then take the compromised d…
- CVE-2019-15106CRITICALCVSS 9.8EG 9.82019-08-16
An issue was discovered in Zoho ManageEngine OpManager in builds before 14310. One can bypass the user password requirement and execute commands on the server. The "username+'@opm' string is used for the password. For example, if the usern…
- CVE-2019-9585CRITICALCVSS 9.8EG 9.82019-08-14
eQ-3 Homematic CCU2 prior to 2.47.10 and CCU3 prior to 3.47.10 JSON API has Improper Access Control for Interface.***Metadata related operations, resulting in the ability to read, set and deletion of Metadata.
- CVE-2019-13101CRITICALCVSS 9.8EG 9.82019-08-08
An issue was discovered on D-Link DIR-600M 3.02, 3.03, 3.04, and 3.06 devices. wan.htm can be accessed directly without authentication, which can lead to disclosure of information about the WAN, and can also be leveraged by an attacker to …
- CVE-2019-1895CRITICALCVSS 9.8EG 9.82019-08-07
A vulnerability in the Virtual Network Computing (VNC) console implementation of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to access the VNC console session of an administrative us…
- CVE-2019-13983CRITICALCVSS 9.8EG 9.82019-07-19
Directus 7 API before 2.2.2 has insufficient anti-automation, as demonstrated by lack of a CAPTCHA in core/Directus/Services/AuthService.php and endpoints/Auth.php.
- CVE-2019-12468CRITICALCVSS 9.8EG 9.82019-07-10
An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.27.0 through 1.32.1. Directly POSTing to Special:ChangeEmail would allow for bypassing re-authentication, allowing for potential account takeover.
- CVE-2019-10121CRITICALCVSS 9.8EG 9.82019-07-10
eQ-3 HomeMatic CCU2 devices before 2.41.8 and CCU3 devices before 3.43.15 use session IDs for authentication but lack authorization checks. An attacker can obtain a session ID via the user authentication dialogue, aka HMCCU-153. This leads…
- CVE-2019-10119CRITICALCVSS 9.8EG 9.82019-07-10
eQ-3 HomeMatic CCU2 devices before 2.41.8 and CCU3 devices before 3.43.16 use session IDs for authentication but lack authorization checks. An attacker can obtain a session ID via an invalid login attempt to the RemoteApi account, aka HMCC…
- CVE-2019-13131CRITICALCVSS 9.8EG 9.82019-07-01
Super Micro SuperDoctor 5, when restrictions are not implemented in agent.cfg, allows remote attackers to execute arbitrary commands via NRPE.
- CVE-2019-12890CRITICALCVSS 9.8EG 9.82019-06-19
RedwoodHQ 2.5.5 does not require any authentication for database operations, which allows remote attackers to create admin users via a con.automationframework users insert_one call.
- CVE-2019-9879CRITICALCVSS 9.8EG 9.82019-06-10
The WPGraphQL 0.2.3 plugin for WordPress allows remote attackers to register a new user with admin privileges, whenever new user registrations are allowed. This is related to the registerUser mutation.
- CVE-2019-11523CRITICALCVSS 9.8EG 9.82019-06-06
Anviz Global M3 Outdoor RFID Access Control executes any command received from any source. No authentication/encryption is done. Attackers can fully interact with the device: for example, send the "open door" command, download the users li…
- CVE-2019-9871CRITICALCVSS 9.8EG 9.82019-05-31
Jector Smart TV FM-K75 devices allow remote code execution because there is an adb open port with root permission.
- CVE-2019-12289CRITICALCVSS 9.8EG 9.82019-05-23
An issue was discovered in upgrade_firmware.cgi on VStarcam 100T (C7824WIP) CH-sys-48.53.75.119~123 and 200V (C38S) CH-sys-48.53.203.119~123 devices. A remote command can be executed through a system firmware update without authentication.…
- CVE-2019-12288CRITICALCVSS 9.8EG 9.82019-05-23
An issue was discovered in upgrade_htmls.cgi on VStarcam 100T (C7824WIP) KR75.8.53.20 and 200V (C38S) KR203.18.1.20 devices. The web service, network, and account files can be manipulated through a web UI firmware update without any authen…
Map vulnerabilities like CWE-306 to your infrastructure
EchelonGraph correlates every CVE — across CWE-306 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Book a Demo →