CWE-306— Missing Authentication for Critical Function
2,156 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-306page 23 of 44
- CVE-2023-31411CRITICALCVSS 9.8EG 9.82023-06-19
A remote unprivileged attacker can modify and access configuration settings on the EventCam App due to the absence of API authentication. The lack of authentication in the API allows the attacker to potentially compromise the functionality…
- CVE-2023-31444HIGHCVSS 7.5EG 7.52023-04-28
In Talend Studio before 7.3.1-R2022-10 and 8.x before 8.0.1-R2022-09, microservices allow unauthenticated access to the Jolokia endpoint of the microservice. This allows for remote access to the JVM via the Jolokia JMX-HTTP bridge.
- CVE-2023-31594HIGHCVSS 7.5EG 7.52023-05-25
IC Realtime ICIP-P2012T 2.420 is vulnerable to Incorrect Access Control via an exposed HTTP channel using VLC network.
- CVE-2023-32460HIGHCVSS 8.8EG 8.82023-12-08
Dell PowerEdge BIOS contains an improper privilege management security vulnerability. An unauthenticated local attacker could potentially exploit this vulnerability, leading to privilege escalation.
- CVE-2023-32680MEDIUMCVSS 5.8EG 5.82023-05-18
Metabase is an open source business analytics engine. To edit SQL Snippets, Metabase should have required people to be in at least one group with native query editing permissions to a database–but affected versions of Metabase didn't enf…
- CVE-2023-33247HIGHCVSS 7.5EG 7.52023-05-26
Talend Data Catalog remote harvesting server before 8.0-20230413 contains a /upgrade endpoint that allows an unauthenticated WAR file to be deployed on the server. (A mitigation is that the remote harvesting server should be behind a firew…
- CVE-2023-33553CRITICALCVSS 9.8EG 9.82023-06-07
An issue in Planet Technologies WDRT-1800AX v1.01-CP21 allows attackers to bypass authentication and escalate privileges to root via manipulation of the LoginStatus cookie.
- CVE-2023-34060CRITICALCVSS 9.8EG 9.82023-11-14
VMware Cloud Director Appliance contains an authentication bypass vulnerability in case VMware Cloud Director Appliance was upgraded to 10.5 from an older version. On an upgraded version of VMware Cloud Director Appliance 10.5, a maliciou…
- CVE-2023-34094HIGHCVSS 7.5EG 7.52023-06-02
ChuanhuChatGPT is a graphical user interface for ChatGPT and many large language models. A vulnerability in versions 20230526 and prior allows unauthorized access to the config.json file of the privately deployed ChuanghuChatGPT project, w…
- CVE-2023-34329CRITICALCVSS 9.1EG 9.12023-07-18
AMI MegaRAC SPx12 contains a vulnerability in BMC where a User may cause an authentication bypass by spoofing the HTTP header. A successful exploit of this vulnerability may lead to loss of confidentiality, integrity, and availability.
- CVE-2023-34335HIGHCVSS 7.7EG 7.72023-06-12
AMI BMC contains a vulnerability in the IPMI handler, where an unauthenticated host is allowed to write to a host SPI flash, bypassing secure boot protections. An exploitation of this vulnerability may lead to a loss of integrity or denial…
- CVE-2023-34392HIGHCVSS 8.2EG 8.22023-08-31
A Missing Authentication for Critical Function vulnerability in the Schweitzer Engineering Laboratories SEL-5037 SEL Grid Configurator could allow an attacker to run arbitrary commands on managed devices by an authorized device operator. …
- CVE-2023-34761MEDIUMCVSS 6.5EG 6.52023-06-28
An unauthenticated attacker within BLE proximity can remotely connect to a 7-Eleven LED Message Cup, Hello Cup 1.3.1 for Android, and bypass the application's client-side chat censor filter.
- CVE-2023-35830CRITICALCVSS 9.8EG 9.82023-06-29
STW (aka Sensor-Technik Wiedemann) TCG-4 Connectivity Module DeploymentPackage_v3.03r0-Impala and DeploymentPackage_v3.04r2-Jellyfish and TCG-4lite Connectivity Module DeploymentPackage_v3.04r2-Jellyfish allow an attacker to gain full remo…
- CVE-2023-35854CRITICALCVSS 9.8EG 9.82023-06-20
Zoho ManageEngine ADSelfService Plus through 6113 has an authentication bypass that can be exploited to steal the domain controller session token for identity spoofing, thereby achieving the privileges of the domain controller administrato…
- CVE-2023-35872MEDIUMCVSS 6.5EG 6.52023-07-11
The Message Display Tool (MDT) of SAP NetWeaver Process Integration - version SAP_XIAF 7.50, does not perform authentication checks for certain functionalities that require user identity. An unauthenticated user might access technical da…
- CVE-2023-35873MEDIUMCVSS 6.5EG 6.52023-07-11
The Runtime Workbench (RWB) of SAP NetWeaver Process Integration - version SAP_XITOOL 7.50, does not perform authentication checks for certain functionalities that require user identity. An unauthenticated user might access technical dat…
- CVE-2023-35874MEDIUMCVSS 6.0EG 6.02023-07-11
SAP NetWeaver Application Server ABAP and ABAP Platform - version KRNL64NUC, 7.22, KRNL64NUC 7.22EXT, KRNL64UC 7.22, KRNL64UC 7.22EXT, KRNL64UC 7.53, KERNEL 7.22, KERNEL, 7.53, KERNEL 7.77, KERNEL 7.81, KERNEL 7.85, KERNEL 7.89, KERNEL 7.5…
- CVE-2023-36347HIGHCVSS 7.5EG 7.52023-06-30
A broken authentication mechanism in the endpoint excel.php of POS Codekop v2.0 allows unauthenticated attackers to download selling data.
- CVE-2023-36669CRITICALCVSS 9.8EG 9.82023-07-18
Missing Authentication for a Critical Function within the Kratos NGC Indoor Unit (IDU) before 11.4 allows remote attackers to obtain arbitrary control of the IDU/ODU system. Any attacker with layer-3 network access to the IDU can impersona…
- CVE-2023-36846MEDIUMCVSS 5.3EG 9.0⚠ KEV2023-08-17
A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to u…
- CVE-2023-36847MEDIUMCVSS 5.3EG 9.0⚠ KEV2023-08-17
A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on EX Series allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to …
- CVE-2023-36851MEDIUMCVSS 5.3EG 9.0⚠ KEV2023-09-27
A Missing Authentication for Critical Function vulnerability in Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause limited impact to the file system integrity. With a specific request to …
- CVE-2023-36926LOWCVSS 3.7EG 3.72023-08-08
Due to missing authentication check in SAP Host Agent - version 7.22, an unauthenticated attacker can set an undocumented parameter to a particular compatibility value and in turn call read functions. This allows the attacker to gather som…
- CVE-2023-37265CRITICALCVSS 9.8EG 9.82023-07-17
CasaOS is an open-source Personal Cloud system. Due to a lack of IP address verification an unauthenticated attackers can execute arbitrary commands as `root` on CasaOS instances. The problem was addressed by improving the detection of cli…
- CVE-2023-37325MEDIUMCVSS 5.4EG 5.42024-05-07
D-Link DAP-2622 DDP Set SSID List Missing Authentication Vulnerability. This vulnerability allows network-adjacent attackers to make unauthorized changes to device configuration on affected installations of D-Link DAP-2622 routers. Authent…
- CVE-2023-37373MEDIUMCVSS 5.3EG 5.32023-08-08
A vulnerability has been identified in RUGGEDCOM CROSSBOW (All versions < V5.4). The affected applications accept unauthenticated file write messages. An unauthenticated remote attacker could write arbitrary files to the affected applicati…
- CVE-2023-37483CRITICALCVSS 9.8EG 9.82023-08-08
SAP PowerDesigner - version 16.7, has improper access control which might allow an unauthenticated attacker to run arbitrary queries against the back-end database via Proxy.
- CVE-2023-37495MEDIUMCVSS 5.9EG 5.92024-02-29
Internet passwords stored in Person documents in the Domino® Directory created using the "Add Person" action on the People & Groups tab in the Domino® Administrator are secured using a cryptographically weak hash algorithm. This could e…
- CVE-2023-38028CRITICALCVSS 9.1EG 9.12023-08-28
Saho’s attendance devices ADM100 and ADM-100FP have insufficient authentication. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication to read system information and operate user's data, but can’t…
- CVE-2023-38030HIGHCVSS 7.5EG 7.52023-08-28
Saho’s attendance devices ADM100 and ADM-100FP have a vulnerability of missing authentication for critical functions. An unauthenticated remote attacker can execute system commands in partial website URLs to read sensitive device inform…
- CVE-2023-38123HIGHCVSS 8.8EG 7.52024-05-03
Inductive Automation Ignition OPC UA Quick Client Missing Authentication for Critical Function Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Inductive …
- CVE-2023-38186HIGHCVSS 8.8EG 7.82023-08-08
Windows Mobile Device Management Elevation of Privilege Vulnerability
- CVE-2023-38379HIGHCVSS 7.5EG 7.52023-07-16
The web interface on the RIGOL MSO5000 digital oscilloscope with firmware 00.01.03.00.03 allows remote attackers to change the admin password via a zero-length pass0 to the webcontrol changepwd.cgi application, i.e., the entered password o…
- CVE-2023-38422HIGHCVSS 7.5EG 7.52023-08-23
Walchem Intuition 9 firmware versions prior to v4.21 are missing authentication for some of the API routes of the management web server. This could allow an attacker to download and export sensitive data.
- CVE-2023-38523MEDIUMCVSS 5.3EG 5.32023-07-20
The web interface on multiple Samsung Harman AMX N-Series devices allows directory listing for the /tmp/ directory, without authentication, exposing sensitive information such as the command history and screenshot of the file being process…
- CVE-2023-39231HIGHCVSS 7.3EG 7.32023-10-25
PingFederate using the PingOne MFA adapter allows a new MFA device to be paired without requiring second factor authentication from an existing registered device. A threat actor may be able to exploit this vulnerability to register their o…
- CVE-2023-39380HIGHCVSS 7.5EG 7.52023-08-13
Permission control vulnerability in the audio module. Successful exploitation of this vulnerability may cause audio devices to perform abnormally.
- CVE-2023-39436MEDIUMCVSS 5.8EG 5.82023-08-08
SAP Supplier Relationship Management -versions 600, 602, 603, 604, 605, 606, 616, 617, allows an unauthorized attacker to discover information relating to SRM within Vendor Master Data for Business Partners replication functionality.This …
- CVE-2023-39457CRITICALCVSS 9.8EG 9.82024-05-03
Triangle MicroWorks SCADA Data Gateway Missing Authentication Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of Triangle MicroWorks SCADA Data Gateway. Authentication is not req…
- CVE-2023-39466MEDIUMCVSS 5.3EG 5.32024-05-03
Triangle MicroWorks SCADA Data Gateway get_config Missing Authentication Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Triangle MicroWorks SC…
- CVE-2023-39930HIGHCVSS 7.5EG 7.52023-10-25
A first-factor authentication bypass vulnerability exists in the PingFederate with PingID Radius PCV when a MSCHAP authentication request is sent via a maliciously crafted RADIUS client request.
- CVE-2023-39981HIGHCVSS 7.5EG 7.52023-09-02
A vulnerability that allows for unauthorized access has been discovered in MXsecurity versions prior to v1.0.1. This vulnerability arises from inadequate authentication measures, potentially leading to the disclosure of device information …
- CVE-2023-40170MEDIUMCVSS 4.6EG 4.62023-08-28
jupyter-server is the backend for Jupyter web applications. Improper cross-site credential checks on `/files/` URLs could allow exposure of certain file contents, or accessing files when opening untrusted files via "Open image in new tab"…
- CVE-2023-40393HIGHCVSS 7.5EG 7.52024-01-10
An authentication issue was addressed with improved state management. This issue is fixed in iOS 17 and iPadOS 17, macOS Sonoma 14. Photos in the Hidden Photos Album may be viewed without authentication.
- CVE-2023-40401HIGHCVSS 7.5EG 7.52023-10-25
The issue was addressed with additional permissions checks. This issue is fixed in macOS Ventura 13.6.1. An attacker may be able to access passkeys without authentication.
- CVE-2023-40545HIGHCVSS 8.8EG 8.82024-02-06
Authentication bypass when an OAuth2 Client is using client_secret_jwt as its authentication method on affected 11.3 versions via specially crafted requests.
- CVE-2023-40585HIGHCVSS 7.3EG 7.32023-08-25
ironic-image is a container image to run OpenStack Ironic as part of Metal³. Prior to version capm3-v1.4.3, if Ironic is not deployed with TLS and it does not have API and Conductor split into separate services, access to the API is not p…
- CVE-2023-40598HIGHCVSS 8.5EG 8.52023-08-30
In Splunk Enterprise versions below 8.2.12, 9.0.6, and 9.1.1, an attacker can create an external lookup that calls a legacy internal function. The attacker can use this internal function to insert code into the Splunk platform installation…
- CVE-2023-41183HIGHCVSS 8.8EG 8.82024-05-03
NETGEAR Orbi 760 SOAP API Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR Orbi 760 routers. Authentication is not required to exploit t…
Map vulnerabilities like CWE-306 to your infrastructure
EchelonGraph correlates every CVE — across CWE-306 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →