Vulnerabilities > Missing Authentication for Critical Function

DATE CVE VULNERABILITY TITLE RISK
2022-12-14 CVE-2022-31701 Missing Authentication for Critical Function vulnerability in VMWare products
VMware Workspace ONE Access and Identity Manager contain a broken authentication vulnerability.
network
low complexity
vmware CWE-306
5.3
2022-12-05 CVE-2022-45479 Missing Authentication for Critical Function vulnerability in Beappsmobile PC Keyboard Wifi&Bluetooth
PC Keyboard allows remote unauthenticated users to send instructions to the server to execute arbitrary code without any previous authorization or authentication.
network
low complexity
beappsmobile CWE-306
critical
9.8
2022-12-05 CVE-2022-45481 Missing Authentication for Critical Function vulnerability in Lzmouse Lazy Mouse
The default configuration of Lazy Mouse does not require a password, allowing remote unauthenticated users to execute arbitrary code with no prior authorization or authentication.
network
low complexity
lzmouse CWE-306
critical
9.8
2022-12-05 CVE-2022-45477 Missing Authentication for Critical Function vulnerability in Telepad-App Telepad
Telepad allows remote unauthenticated users to send instructions to the server to execute arbitrary code without any previous authorization or authentication.
network
low complexity
telepad-app CWE-306
critical
9.8
2022-12-02 CVE-2022-46145 Missing Authentication for Critical Function vulnerability in Goauthentik Authentik
authentik is an open-source identity provider.
network
low complexity
goauthentik CWE-306
critical
9.8
2022-11-30 CVE-2022-4228 Missing Authentication for Critical Function vulnerability in Book Store Management System Project Book Store Management System 1.0
A vulnerability classified as problematic has been found in SourceCodester Book Store Management System 1.0.
7.5
2022-11-30 CVE-2022-4229 Missing Authentication for Critical Function vulnerability in Book Store Management System Project Book Store Management System 1.0
A vulnerability classified as critical was found in SourceCodester Book Store Management System 1.0.
network
low complexity
book-store-management-system-project CWE-306
critical
9.8
2022-11-27 CVE-2022-45933 Missing Authentication for Critical Function vulnerability in Kubeview Project Kubeview
KubeView through 0.1.31 allows attackers to obtain control of a Kubernetes cluster because api/scrape/kube-system does not require authentication, and retrieves certificate files that can be used for authentication as kube-admin.
network
low complexity
kubeview-project CWE-306
critical
9.8
2022-11-17 CVE-2022-44001 Missing Authentication for Critical Function vulnerability in Backclick 5.9.63
An issue was discovered in BACKCLICK Professional 5.9.63.
network
low complexity
backclick CWE-306
critical
9.8
2022-11-17 CVE-2022-42982 Missing Authentication for Critical Function vulnerability in Bund BKG Professional Ntripcaster 2.0.39
BKG Professional NtripCaster 2.0.39 allows querying information over the UDP protocol without authentication.
network
low complexity
bund CWE-306
7.5