Vulnerabilities > Missing Authentication for Critical Function

DATE CVE VULNERABILITY TITLE RISK
2023-06-19 CVE-2023-27396 Missing Authentication for Critical Function vulnerability in Omron products
FINS (Factory Interface Network Service) is a message communication protocol, which is designed to be used in closed FA (Factory Automation) networks, and is used in FA networks composed of OMRON products.
network
low complexity
omron CWE-306
critical
9.8
2023-06-13 CVE-2023-31196 Missing Authentication for Critical Function vulnerability in Inaba products
Missing authentication for critical function in Wi-Fi AP UNIT allows a remote unauthenticated attacker to obtain sensitive information of the affected products.
network
low complexity
inaba CWE-306
7.5
2023-06-12 CVE-2023-34335 Missing Authentication for Critical Function vulnerability in AMI Megarac SPX 12.0/13.0
AMI BMC contains a vulnerability in the IPMI handler, where an unauthenticated host is allowed to write to a host SPI flash, bypassing secure boot protections.
network
low complexity
ami CWE-306
critical
9.1
2023-06-07 CVE-2020-36713 Missing Authentication for Critical Function vulnerability in Inspireui Mstore API
The MStore API plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.1.5.
network
low complexity
inspireui CWE-306
critical
9.8
2023-06-07 CVE-2020-36724 Missing Authentication for Critical Function vulnerability in Wordable
The Wordable plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.1.1.
network
low complexity
wordable CWE-306
critical
9.8
2023-06-03 CVE-2023-2781 Missing Authentication for Critical Function vulnerability in Wisetr User Email Verification for Woocommerce
The User Email Verification for WooCommerce plugin for WordPress is vulnerable to authentication bypass via authenticate_user_by_email in versions up to, and including, 3.5.0.
network
low complexity
wisetr CWE-306
critical
9.8
2023-06-02 CVE-2023-34094 Missing Authentication for Critical Function vulnerability in Chuanhuchatgpt Project Chuanhuchatgpt
ChuanhuChatGPT is a graphical user interface for ChatGPT and many large language models.
network
low complexity
chuanhuchatgpt-project CWE-306
5.3
2023-05-30 CVE-2022-36249 Missing Authentication for Critical Function vulnerability in Shopbeat Shop Beat Media Player 2.5.95
Shop Beat Solutions (Pty) LTD Shop Beat Media Player 2.5.95 up to 3.2.57 is vulnerable to Bypass 2FA via APIs.
network
low complexity
shopbeat CWE-306
5.4
2023-05-30 CVE-2022-4240 Missing Authentication for Critical Function vulnerability in Honeywell Onewireless Network Wireless Device Manager Firmware R322.1
Missing Authentication for Critical Function vulnerability in Honeywell OneWireless allows Authentication Bypass. This issue affects OneWireless version 322.1
network
low complexity
honeywell CWE-306
7.5
2023-05-26 CVE-2023-0116 Missing Authentication for Critical Function vulnerability in Huawei Emui 12.0/12.0.1/13.0.0
The reminder module lacks an authentication mechanism for broadcasts received.
network
low complexity
huawei CWE-306
7.5