Vulnerabilities > Missing Authentication for Critical Function

DATE CVE VULNERABILITY TITLE RISK
2021-05-06 CVE-2021-31793 Missing Authentication for Critical Function vulnerability in Nightowlsp Wdb-20 Firmware 20190314
An issue exists on NightOwl WDB-20-V2 WDB-20-V2_20190314 devices that allows an unauthenticated user to gain access to snapshots and video streams from the doorbell.
network
low complexity
nightowlsp CWE-306
7.5
2021-05-05 CVE-2020-36333 Missing Authentication for Critical Function vulnerability in Themegrill Demo Importer
themegrill-demo-importer before 1.6.2 does not require authentication for wiping the database, because of a reset_wizard_actions hook.
network
low complexity
themegrill CWE-306
critical
9.1
2021-05-03 CVE-2020-35755 Missing Authentication for Critical Function vulnerability in Librewireless LS9 Firmware 7040
An issue was discovered on Libre Wireless LS9 LS1.5/p7040 devices.
network
low complexity
librewireless CWE-306
7.5
2021-05-03 CVE-2020-35758 Missing Authentication for Critical Function vulnerability in Librewireless LS9 Firmware 7040
An issue was discovered on Libre Wireless LS9 LS1.5/p7040 devices.
network
low complexity
librewireless CWE-306
critical
9.8
2021-05-03 CVE-2020-35757 Missing Authentication for Critical Function vulnerability in Librewireless LS9 Firmware 7040
An issue was discovered on Libre Wireless LS9 LS1.5/p7040 devices.
network
low complexity
librewireless CWE-306
critical
9.8
2021-05-03 CVE-2020-35756 Missing Authentication for Critical Function vulnerability in Librewireless LS9 Firmware 7040
An issue was discovered on Libre Wireless LS9 LS1.5/p7040 devices.
network
low complexity
librewireless CWE-306
7.5
2021-04-30 CVE-2021-21535 Missing Authentication for Critical Function vulnerability in Dell Hybrid Client 1.0/1.1/1.1.01
Dell Hybrid Client versions prior to 1.5 contain a missing authentication for a critical function vulnerability.
local
low complexity
dell CWE-306
7.8
2021-04-29 CVE-2020-21997 Missing Authentication for Critical Function vulnerability in Smartwares Home Easy Firmware
Smartwares HOME easy <=1.0.9 is vulnerable to an unauthenticated database backup download and information disclosure vulnerability.
network
low complexity
smartwares CWE-306
7.5
2021-04-28 CVE-2020-21996 Missing Authentication for Critical Function vulnerability in AVE products
AVE DOMINAplus <=1.10.x suffers from an unauthenticated reboot command execution.
network
low complexity
ave CWE-306
7.5
2021-04-27 CVE-2020-17517 Missing Authentication for Critical Function vulnerability in Apache Ozone 0.4.2/0.5.0/1.0.0
The S3 buckets and keys in a secure Apache Ozone Cluster must be inaccessible to anonymous access by default.
network
low complexity
apache CWE-306
7.5