Vulnerabilities > Missing Authentication for Critical Function

DATE CVE VULNERABILITY TITLE RISK
2022-12-05 CVE-2022-45477 Missing Authentication for Critical Function vulnerability in Telepad-App Telepad
Telepad allows remote unauthenticated users to send instructions to the server to execute arbitrary code without any previous authorization or authentication.
network
low complexity
telepad-app CWE-306
critical
9.8
2022-12-02 CVE-2022-46145 Missing Authentication for Critical Function vulnerability in Goauthentik Authentik
authentik is an open-source identity provider.
network
low complexity
goauthentik CWE-306
critical
9.8
2022-11-30 CVE-2022-4228 Missing Authentication for Critical Function vulnerability in Book Store Management System Project Book Store Management System 1.0
A vulnerability classified as problematic has been found in SourceCodester Book Store Management System 1.0.
7.5
2022-11-30 CVE-2022-4229 Missing Authentication for Critical Function vulnerability in Book Store Management System Project Book Store Management System 1.0
A vulnerability classified as critical was found in SourceCodester Book Store Management System 1.0.
network
low complexity
book-store-management-system-project CWE-306
critical
9.8
2022-11-27 CVE-2022-45933 Missing Authentication for Critical Function vulnerability in Kubeview Project Kubeview
KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate files that can be used for authentication as kube-admin.
network
low complexity
kubeview-project CWE-306
critical
9.8
2022-11-17 CVE-2022-44001 Missing Authentication for Critical Function vulnerability in Backclick 5.9.63
An issue was discovered in BACKCLICK Professional 5.9.63.
network
low complexity
backclick CWE-306
critical
9.8
2022-11-17 CVE-2022-42982 Missing Authentication for Critical Function vulnerability in Bund BKG Professional Ntripcaster 2.0.39
BKG Professional NtripCaster 2.0.39 allows querying information over the UDP protocol without authentication.
network
low complexity
bund CWE-306
7.5
2022-11-16 CVE-2022-43999 Missing Authentication for Critical Function vulnerability in Backclick 5.9.63
An issue was discovered in BACKCLICK Professional 5.9.63.
network
low complexity
backclick CWE-306
critical
9.8
2022-11-16 CVE-2022-4018 Missing Authentication for Critical Function vulnerability in Ikus-Soft Rdiffweb
Missing Authentication for Critical Function in GitHub repository ikus060/rdiffweb prior to 2.5.0a6.
network
low complexity
ikus-soft CWE-306
4.3
2022-11-09 CVE-2021-46852 Missing Authentication for Critical Function vulnerability in Huawei Emui and Harmonyos
The memory management module has the logic bypass vulnerability.
network
low complexity
huawei CWE-306
7.5