CWE-306— Missing Authentication for Critical Function
2,152 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-306page 4 of 44
- CVE-2019-12119CRITICALCVSS 9.8EG 9.82020-03-18
An issue was discovered in ONAP SDC through Dublin. By accessing port 7000 of demo-sdc-sdc-wfd-fe pod, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arbitrary code inside that pod. All ONAP Op…
- CVE-2019-12120CRITICALCVSS 9.8EG 9.82020-03-18
An issue was discovered in ONAP VNFSDK through Dublin. By accessing port 8000 of demo-vnfsdk-vnfsdk, an unauthenticated attacker (who already has access to pod-to-pod communication) may execute arbitrary code inside that pod. All ONAP Oper…
- CVE-2019-12125CRITICALCVSS 9.8EG 9.82020-03-19
In ONAP Logging through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Oper…
- CVE-2019-12126CRITICALCVSS 9.8EG 9.82020-03-19
In ONAP DCAE through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operati…
- CVE-2019-12127CRITICALCVSS 9.8EG 9.82020-03-19
In ONAP OOM through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operatio…
- CVE-2019-12128CRITICALCVSS 9.8EG 9.82020-03-19
In ONAP SO through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operation…
- CVE-2019-12129CRITICALCVSS 9.8EG 9.82020-03-19
In ONAP MSB through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operatio…
- CVE-2019-12130CRITICALCVSS 9.8EG 9.82020-03-19
In ONAP CLI through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operatio…
- CVE-2019-12174HIGHCVSS 7.8EG 7.82019-07-08
hide.me before 2.4.4 on macOS suffers from a privilege escalation vulnerability in the connectWithExecutablePath:configFilePath:configFileName method of the me_hide_vpnhelper.Helper class in the me.hide.vpnhelper macOS privilege helper too…
- CVE-2019-12288CRITICALCVSS 9.8EG 9.82019-05-23
An issue was discovered in upgrade_htmls.cgi on VStarcam 100T (C7824WIP) KR75.8.53.20 and 200V (C38S) KR203.18.1.20 devices. The web service, network, and account files can be manipulated through a web UI firmware update without any authen…
- CVE-2019-12289CRITICALCVSS 9.8EG 9.82019-05-23
An issue was discovered in upgrade_firmware.cgi on VStarcam 100T (C7824WIP) CH-sys-48.53.75.119~123 and 200V (C38S) CH-sys-48.53.203.119~123 devices. A remote command can be executed through a system firmware update without authentication.…
- CVE-2019-12389HIGHCVSS 7.5EG 7.52019-12-02
Anviz access control devices expose credentials (names and passwords) by allowing remote attackers to query this information without credentials via port tcp/5010.
- CVE-2019-12390MEDIUMCVSS 5.3EG 5.32019-12-02
Anviz access control devices expose private Information (pin code and name) by allowing remote attackers to query this information without credentials via port tcp/5010.
- CVE-2019-12392CRITICALCVSS 9.8EG 9.82019-12-02
Anviz access control devices allow remote attackers to issue commands without a password.
- CVE-2019-12468CRITICALCVSS 9.8EG 9.82019-07-10
An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.27.0 through 1.32.1. Directly POSTing to Special:ChangeEmail would allow for bypassing re-authentication, allowing for potential account takeover.
- CVE-2019-12500MEDIUMCVSS 6.5EG 6.52019-05-31
The Xiaomi M365 scooter 2019-02-12 before 1.5.1 allows spoofing of "suddenly accelerate" commands. This occurs because Bluetooth Low Energy commands have no server-side authentication check. Other affected commands include suddenly braking…
- CVE-2019-12503CRITICALCVSS 9.8EG 9.82019-12-02
Due to unencrypted and unauthenticated data communication, the wireless barcode scanner Inateck BCST-60 is prone to keystroke injection attacks. Thus, an attacker is able to send arbitrary keystrokes to a victim's computer system, e.g., to…
- CVE-2019-12505HIGHCVSS 8.8EG 8.82019-06-07
Due to unencrypted and unauthenticated data communication, the wireless presenter Inateck WP1001 v1.3C is prone to keystroke injection attacks. Thus, an attacker is able to send arbitrary keystrokes to a victim's computer system, e.g., to …
- CVE-2019-12506HIGHCVSS 8.8EG 8.82019-06-07
Due to unencrypted and unauthenticated data communication, the wireless presenter Logitech R700 Laser Presentation Remote R-R0010 is prone to keystroke injection attacks. Thus, an attacker is able to send arbitrary keystrokes to a victim's…
- CVE-2019-12524CRITICALCVSS 9.8EG 9.82020-04-15
An issue was discovered in Squid through 4.7. When handling requests from users, Squid checks its rules to see if the request should be denied. Squid by default comes with rules to block access to the Cache Manager, which serves detailed s…
- CVE-2019-12634HIGHCVSS 7.5EG 7.52019-08-21
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Director Express for Big Data could allow an unauthenticated, remote attacker to cause a de…
- CVE-2019-12890CRITICALCVSS 9.8EG 9.82019-06-19
RedwoodHQ 2.5.5 does not require any authentication for database operations, which allows remote attackers to create admin users via a con.automationframework users insert_one call.
- CVE-2019-12919MEDIUMCVSS 5.5EG 5.52019-06-20
On Shenzhen Cylan Clever Dog Smart Camera DOG-2W and DOG-2W-V4 devices, an attacker on the local network has unauthenticated access to the internal SD card via the HTTP service on port 8000. The HTTP web server on the camera allows anyone …
- CVE-2019-13101CRITICALCVSS 9.8EG 9.82019-08-08
An issue was discovered on D-Link DIR-600M 3.02, 3.03, 3.04, and 3.06 devices. wan.htm can be accessed directly without authentication, which can lead to disclosure of information about the WAN, and can also be leveraged by an attacker to …
- CVE-2019-13131CRITICALCVSS 9.8EG 9.82019-07-01
Super Micro SuperDoctor 5, when restrictions are not implemented in agent.cfg, allows remote attackers to execute arbitrary commands via NRPE.
- CVE-2019-13194HIGHCVSS 7.5EG 7.52020-03-13
Some Brother printers (such as the HL-L8360CDW v1.20) were affected by different information disclosure vulnerabilities that provided sensitive information to an unauthenticated user who visits a specific URL.
- CVE-2019-13205HIGHCVSS 7.5EG 7.52020-03-13
All configuration parameters of certain Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) were accessible by unauthenticated users. This information was only presented in the menus when authenticated, and the pages that loade…
- CVE-2019-13338HIGHCVSS 7.5EG 7.52019-07-09
In WESEEK GROWI before 3.5.0, a remote attacker can obtain the password hash of the creator of a page by leveraging wiki access to make API calls for page metadata. In other words, the password hash can be retrieved even though it is not a…
- CVE-2019-13344MEDIUMCVSS 5.3EG 5.32019-07-05
An authentication bypass vulnerability in the CRUDLab WP Like Button plugin through 1.6.0 for WordPress allows unauthenticated attackers to change settings. The contains() function in wp_like_button.php did not check if the current request…
- CVE-2019-13405CRITICALCVSS 9.8EG 9.82019-08-29
A broken access control vulnerability found in Advan VD-1 firmware version 230 leads to insecure ADB service. An attacker can send a POST request to cgibin/AdbSetting.cgi to enable ADB without any authentication then take the compromised d…
- CVE-2019-13406HIGHCVSS 7.5EG 7.52019-08-29
A broken access control vulnerability found in Advan VD-1 firmware versions up to 230. An attacker can send a POST request to cgibin/ApkUpload.cgi to install arbitrary APK without any authentication.
- CVE-2019-13523MEDIUMCVSS 5.3EG 5.32019-09-26
In Honeywell Performance IP Cameras and Performance NVRs, the integrated web server of the affected devices could allow remote attackers to obtain web configuration data in JSON format for IP cameras and NVRs (Network Video Recorders), whi…
- CVE-2019-13525MEDIUMCVSS 5.3EG 5.32019-10-25
In IP-AK2 Access Control Panel Version 1.04.07 and prior, the integrated web server of the affected devices could allow remote attackers to obtain web configuration data, which can be accessed without authentication over the network.
- CVE-2019-13547CRITICALCVSS 9.8EG 9.82019-10-31
Advantech WISE-PaaS/RMM, Versions 3.3.29 and prior. There is an unsecured function that allows anyone who can access the IP address to use the function without authentication.
- CVE-2019-13549HIGHCVSS 7.5EG 7.52019-10-25
Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1.5.3 – B1.2.4. The authentication mechanism on affected systems does not provide a sufficient level of protection against unauthorized configuration change…
- CVE-2019-13933HIGHCVSS 8.6EG 8.62020-01-16
A vulnerability has been identified in SCALANCE X204RNA (HSR), SCALANCE X204RNA (PRP), SCALANCE X204RNA EEC (HSR), SCALANCE X204RNA EEC (PRP), SCALANCE X204RNA EEC (PRP/HSR), SCALANCE X302-7 EEC (230V), SCALANCE X302-7 EEC (230V, coated), …
- CVE-2019-13983CRITICALCVSS 9.8EG 9.82019-07-19
Directus 7 API before 2.2.2 has insufficient anti-automation, as demonstrated by lack of a CAPTCHA in core/Directus/Services/AuthService.php and endpoints/Auth.php.
- CVE-2019-14253MEDIUMCVSS 6.5EG 6.52019-09-18
An issue was discovered in servletcontroller in the secure portal in Publisure 2.1.2. One can bypass authentication and perform a query on PHP forms within the /AdminDir folder that should be restricted.
- CVE-2019-14511HIGHCVSS 7.5EG 7.52019-08-22
Sphinx Technologies Sphinx 3.1.1 by default has no authentication and listens on 0.0.0.0, making it exposed to the internet (unless filtered by a firewall or reconfigured to listen to 127.0.0.1 only).
- CVE-2019-14927HIGHCVSS 7.5EG 7.52019-10-28
An issue was discovered on Mitsubishi Electric Europe B.V. ME-RTU devices through 2.02 and INEA ME-RTU devices through 3.0. An unauthenticated remote configuration download vulnerability allows an attacker to download the smartRTU's config…
- CVE-2019-14984HIGHCVSS 8.1EG 8.12019-08-13
eQ-3 Homematic CCU2 and CCU3 with the XML-API through 1.2.0 AddOn installed allow Remote Code Execution by unauthenticated attackers with access to the web interface, because the undocumented addons/xmlapi/exec.cgi script uses CMD_EXEC to …
- CVE-2019-15018HIGHCVSS 7.5EG 7.52019-10-09
A security vulnerability exists in the Zingbox Inspector versions 1.280 and earlier, where authentication is not required when binding the Inspector instance to a different customer tenant.
- CVE-2019-15043HIGHCVSS 7.5EG 9.02019-09-03
In Grafana 2.x through 6.x before 6.3.4, parts of the HTTP API allow unauthenticated use. This makes it possible to run a denial of service attack against the server running Grafana.
- CVE-2019-15064CRITICALCVSS 9.8EG 9.82019-10-17
HiNet GPON firmware version < I040GWR190731 allows an attacker login to device without any authentication.
- CVE-2019-15068CRITICALCVSS 9.8EG 9.82019-09-25
A broken access control vulnerability in Smart Battery A4, a multifunctional portable charger, firmware version ?<= r1.7.9 allows an attacker to get/reset administrator’s password without any authentication.
- CVE-2019-15102CRITICALCVSS 9.8EG 9.82019-09-06
An issue was discovered in Tyto Sahi Pro 6.x through 8.0.0. TestRunner_Non_distributed (and distributed end points) does not have any authentication mechanism. This allow an attacker to execute an arbitrary script on the remote Sahi Pro se…
- CVE-2019-15106CRITICALCVSS 9.8EG 9.82019-08-16
An issue was discovered in Zoho ManageEngine OpManager in builds before 14310. One can bypass the user password requirement and execute commands on the server. The "username+'@opm' string is used for the password. For example, if the usern…
- CVE-2019-15129MEDIUMCVSS 5.3EG 5.32019-08-18
The Recruitment module in Humanica Humatrix 7 1.0.0.203 and 1.0.0.681 allows an unauthenticated attacker to access all candidates' files in the photo folder on the website by specifying a "user id" parameter and file name, such as in a rec…
- CVE-2019-15282MEDIUMCVSS 5.3EG 5.32019-10-16
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an unauthenticated, remote attacker read tcpdump files generated on an affected device. The vulnerability is due an issue in…
- CVE-2019-15506HIGHCVSS 7.5EG 7.52019-08-26
An issue was discovered in Kaseya Virtual System Administrator (VSA) through 9.4.0.37. It has a critical information disclosure vulnerability. An unauthenticated attacker can send properly formatted requests to the web application and down…
Map vulnerabilities like CWE-306 to your infrastructure
EchelonGraph correlates every CVE — across CWE-306 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →