Vulnerabilities > Missing Authentication for Critical Function

DATE CVE VULNERABILITY TITLE RISK
2020-03-24 CVE-2019-20595 Missing Authentication for Critical Function vulnerability in Google Android 9.0
An issue was discovered on Samsung mobile devices with P(9.0) software.
low complexity
google CWE-306
2.4
2020-03-24 CVE-2019-20579 Missing Authentication for Critical Function vulnerability in Google Android
An issue was discovered on Samsung mobile devices with N(7.x), O(8.x), and P(9.0) software.
low complexity
google CWE-306
2.4
2020-03-24 CVE-2019-20559 Missing Authentication for Critical Function vulnerability in Google Android 9.0
An issue was discovered on Samsung mobile devices with P(9.0) software.
low complexity
google CWE-306
2.4
2020-03-24 CVE-2019-20550 Missing Authentication for Critical Function vulnerability in Google Android 8.0/8.1
An issue was discovered on Samsung mobile devices with O(8.x) (released in China and India) software.
local
low complexity
google CWE-306
5.5
2020-03-24 CVE-2020-10833 Missing Authentication for Critical Function vulnerability in Google Android 10.0
An issue was discovered on Samsung mobile devices with Q(10.0) software.
network
low complexity
google CWE-306
7.5
2020-03-24 CVE-2019-20532 Missing Authentication for Critical Function vulnerability in Google Android
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software.
network
low complexity
google CWE-306
5.3
2020-03-23 CVE-2020-10874 Missing Authentication for Critical Function vulnerability in Motorola products
Motorola FX9500 devices allow remote attackers to read database files.
network
low complexity
motorola CWE-306
7.5
2020-03-23 CVE-2020-7479 Missing Authentication for Critical Function vulnerability in Schneider-Electric Interactive Graphical Scada System 14.0/14.0.0.19120
A CWE-306: Missing Authentication for Critical Function vulnerability exists in IGSS (Versions 14 and prior using the service: IGSSupdate), which could allow a local user to execute processes that otherwise require escalation privileges when sending local network commands to the IGSS Update Service.
local
low complexity
schneider-electric CWE-306
7.8
2020-03-23 CVE-2020-8497 Missing Authentication for Critical Function vulnerability in Artica Pandora FMS
In Artica Pandora FMS through 7.42, an unauthenticated attacker can read the chat history.
network
low complexity
artica CWE-306
5.3
2020-03-20 CVE-2019-16258 Missing Authentication for Critical Function vulnerability in Hom.Ee Brain Cube Core 2.23.0
The bootloader of the homee Brain Cube V2 through 2.23.0 allows attackers with physical access to gain root access by manipulating the U-Boot environment via the CLI after connecting to the internal UART interface.
low complexity
hom-ee CWE-306
6.8