Vulnerabilities > Missing Authentication for Critical Function
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-02-21 | CVE-2019-8985 | Missing Authentication for Critical Function vulnerability in Netis-Systems Wf2411 Firmware and Wf2880 Firmware On Netis WF2411 with firmware 2.1.36123 and other Netis WF2xxx devices (possibly WF2411 through WF2880), there is a stack-based buffer overflow that does not require authentication. | 9.8 |
2019-02-15 | CVE-2019-0261 | Missing Authentication for Critical Function vulnerability in SAP Landscape Management 3.0 Under certain circumstances, SAP HANA Extended Application Services, advanced model (XS advanced) does not perform authentication checks properly for XS advanced platform and business users. | 9.8 |
2019-02-13 | CVE-2019-6543 | Missing Authentication for Critical Function vulnerability in Aveva Indusoft web Studio and Intouch Machine Edition 2014 AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. | 9.8 |
2019-02-12 | CVE-2019-6533 | Missing Authentication for Critical Function vulnerability in Kunbus Pr100088 Modbus Gateway Firmware 1.0.10232/1.1.13166 Registers used to store Modbus values can be read and written from the web interface without authentication in the PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166). | 9.1 |
2019-02-05 | CVE-2019-7390 | Missing Authentication for Critical Function vulnerability in Dlink Dir-823G Firmware 1.02B03 An issue was discovered in /bin/goahead on D-Link DIR-823G devices with firmware 1.02B03. | 8.6 |
2019-02-05 | CVE-2019-7389 | Missing Authentication for Critical Function vulnerability in Dlink Dir-823G Firmware 1.02B03 An issue was discovered in /bin/goahead on D-Link DIR-823G devices with the firmware 1.02B03. | 7.5 |
2019-01-16 | CVE-2019-6447 | Missing Authentication for Critical Function vulnerability in Estrongs ES File Explorer File Manager The ES File Explorer File Manager application through 4.1.9.7.4 for Android allows remote attackers to read arbitrary files or execute applications via TCP port 59777 requests on the local Wi-Fi network. | 8.1 |
2019-01-11 | CVE-2018-15466 | Missing Authentication for Critical Function vulnerability in Cisco Policy Suite for Mobile 12.0.0 A vulnerability in the Graphite web interface of the Policy and Charging Rules Function (PCRF) of Cisco Policy Suite (CPS) could allow an unauthenticated, remote attacker to access the Graphite web interface. | 3.7 |
2019-01-10 | CVE-2018-0181 | Missing Authentication for Critical Function vulnerability in Cisco products A vulnerability in the Redis implementation used by the Cisco Policy Suite for Mobile and Cisco Policy Suite Diameter Routing Agent software could allow an unauthenticated, remote attacker to modify key-value pairs for short-lived events stored by the Redis server. | 9.8 |
2019-01-08 | CVE-2019-0246 | Missing Authentication for Critical Function vulnerability in SAP Cloud Connector SAP Cloud Connector, before version 2.11.3, does not perform any authentication checks for functionalities that require user identity. | 9.8 |