Vulnerabilities > Missing Authentication for Critical Function

DATE CVE VULNERABILITY TITLE RISK
2021-06-16 CVE-2021-32659 Missing Authentication for Critical Function vulnerability in Matrix Matrix-Appservice-Bridge
Matrix-appservice-bridge is the bridging service for the Matrix communication program's application services.
network
matrix CWE-306
3.5
2021-06-11 CVE-2021-32930 Missing Authentication for Critical Function vulnerability in Advantech Iview 5.6/5.7.03.6112
The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).
network
low complexity
advantech CWE-306
7.5
2021-06-09 CVE-2021-23847 Missing Authentication for Critical Function vulnerability in Bosch Cpp6 Firmware, Cpp7.3 Firmware and Cpp7 Firmware
A Missing Authentication in Critical Function in Bosch IP cameras allows an unauthenticated remote attacker to extract sensitive information or change settings of the camera by sending crafted requests to the device.
network
low complexity
bosch CWE-306
6.4
2021-06-04 CVE-2021-26928 Missing Authentication for Critical Function vulnerability in NIC Bird
BIRD through 2.0.7 does not provide functionality for password authentication of BGP peers.
network
high complexity
nic CWE-306
6.8
2021-06-03 CVE-2021-22316 Missing Authentication for Critical Function vulnerability in Huawei Emui and Magic UI
There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone.
local
low complexity
huawei CWE-306
4.6
2021-06-03 CVE-2021-22322 Missing Authentication for Critical Function vulnerability in Huawei Emui and Magic UI
There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone.
network
low complexity
huawei CWE-306
5.0
2021-05-26 CVE-2020-25634 Missing Authentication for Critical Function vulnerability in Redhat 3Scale and 3Scale API Management
A flaw was found in Red Hat 3scale’s API docs URL, where it is accessible without credentials.
network
low complexity
redhat CWE-306
5.4
2021-05-26 CVE-2021-21986 Missing Authentication for Critical Function vulnerability in VMWare Vcenter Server 6.5/6.7/7.0
The vSphere Client (HTML5) contains a vulnerability in a vSphere authentication mechanism for the Virtual SAN Health Check, Site Recovery, vSphere Lifecycle Manager, and VMware Cloud Director Availability plug-ins.
network
low complexity
vmware CWE-306
critical
10.0
2021-05-26 CVE-2020-25697 Missing Authentication for Critical Function vulnerability in X.Org X Server
A privilege escalation flaw was found in the Xorg-x11-server due to a lack of authentication for X11 clients.
local
high complexity
x-org CWE-306
7.0
2021-05-25 CVE-2021-30190 Missing Authentication for Critical Function vulnerability in Codesys V2 web Server
CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control.
network
low complexity
codesys CWE-306
7.5