Vulnerabilities > Missing Authentication for Critical Function
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-11-30 | CVE-2022-4229 | Missing Authentication for Critical Function vulnerability in Book Store Management System Project Book Store Management System 1.0 A vulnerability classified as critical was found in SourceCodester Book Store Management System 1.0. | 9.8 |
2022-11-27 | CVE-2022-45933 | Missing Authentication for Critical Function vulnerability in Kubeview Project Kubeview KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate files that can be used for authentication as kube-admin. | 9.8 |
2022-11-17 | CVE-2022-44001 | Missing Authentication for Critical Function vulnerability in Backclick 5.9.63 An issue was discovered in BACKCLICK Professional 5.9.63. | 9.8 |
2022-11-17 | CVE-2022-42982 | Missing Authentication for Critical Function vulnerability in Bund BKG Professional Ntripcaster 2.0.39 BKG Professional NtripCaster 2.0.39 allows querying information over the UDP protocol without authentication. | 7.5 |
2022-11-16 | CVE-2022-43999 | Missing Authentication for Critical Function vulnerability in Backclick 5.9.63 An issue was discovered in BACKCLICK Professional 5.9.63. | 9.8 |
2022-11-16 | CVE-2022-4018 | Missing Authentication for Critical Function vulnerability in Ikus-Soft Rdiffweb Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6. | 4.3 |
2022-11-09 | CVE-2021-46852 | Missing Authentication for Critical Function vulnerability in Huawei Emui and Harmonyos The memory management module has the logic bypass vulnerability. | 7.5 |
2022-11-08 | CVE-2022-30515 | Missing Authentication for Critical Function vulnerability in Zkteco Biotime 8.5.4/8.5.5 ZKTeco BioTime 8.5.4 is missing authentication on folders containing employee photos, allowing an attacker to view them through filename enumeration. | 5.3 |
2022-11-03 | CVE-2022-38168 | Missing Authentication for Critical Function vulnerability in Avaya products Broken Access Control in User Authentication in Avaya Scopia Pathfinder 10 and 20 PTS version 8.3.7.0.4 allows remote unauthenticated attackers to bypass the login page, access sensitive information, and reset user passwords via URL modification. | 9.1 |
2022-11-03 | CVE-2022-3675 | Missing Authentication for Critical Function vulnerability in Redhat Fedora Coreos 36.20220820.3.0 Fedora CoreOS supports setting a GRUB bootloader password using a Butane config. | 5.5 |