Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2023-3104
Lack of authentication vulnerability. An unauthenticated local user is able to see through the cameras using the web server due to the lack of any fo…
A1 Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-42770
Red Lion SixTRAK and VersaTRAK Series RTUs with authenticated users enabled (UDR-A) any Sixnet UDR message will meet an authentication challenge over…
St Ipm 6350 Firmware
Patch available
CRITICAL 9.8
CVE-2023-47674
Missing authentication for critical function vulnerability in First Corporation's DVRs allows a remote unauthenticated attacker to rewrite or obtain …
Cfr 1004ea Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-34060
VMware Cloud Director Appliance contains an authentication bypass vulnerability in case VMware Cloud Director Appliance was upgraded to 10.5 from
an …
Cloud Director
10.5+
MEDIUM 6.5
CVE-2023-46096
A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). The PUD Manager of affected products does not properly authenticate use…
Simatic Pcs Neo
4.1+
MEDIUM 5.3
CVE-2023-46819
Missing Authentication in Apache Software Foundation Apache OFBiz when using the Solr plugin.
This issue affects Apache OFBiz: before 18.12.09.
Use…
Ofbiz
18.12.09+
CRITICAL 9.1
CVE-2023-4699
Missing Authentication for Critical Function vulnerability in Mitsubishi Electric Corporation MELSEC-F Series CPU modules, MELSEC iQ-F Series, MELSEC…
Fx3u 32mt\/es Firmware
Mitigation only
HIGH 8.2
CVE-2023-46381EPSS 7%
LOYTEC LINX-151, LINX-212, LVIS-3ME12-A1, LIOB-586, LIOB-580 V2, LIOB-588, L-INX Configurator devices (all versions) lack authentication for the prei…
Linx 212 Firmware
No fix yet
HIGH 7.8
CVE-2022-43554
Ivanti Avalanche Smart Device Service Missing Authentication Local Privilege Escalation Vulnerability
Avalanche
6.4.1.236+
HIGH 7.8
CVE-2022-43555
Ivanti Avalanche Printer Device Service Missing Authentication Local Privilege Escalation Vulnerability
Avalanche
6.4.1.236+
CRITICAL 9.8
CVE-2023-41351
Chunghwa Telecom NOKIA G-040W-Q has a vulnerability of authentication bypass, which allows an unauthenticated remote attacker to bypass the authentic…
G 040w Q Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-46249
authentik is an open-source Identity Provider. Prior to versions 2023.8.4 and 2023.10.2, when the default admin user has been deleted, it is potentia…
Authentik
2023.8.4 / 2023.10.2+
HIGH 7.5
CVE-2023-46978
TOTOLINK X6000R V9.4.0cu.852_B20230719 is vulnerable to Incorrect Access Control.Attackers can reset login password & WIFI passwords without authenti…
X6000r Firmware
No fix yet
CRITICAL 9.8
CVE-2023-46747 KEVEPSS 97%
Undisclosed requests may bypass configuration utility authentication, allowing an attacker with network access to the BIG-IP system through the manag…
Big Ip Access Policy Manager
after 17.1.1
MEDIUM 5.3
CVE-2023-42845
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sonoma 14.1, iOS 17.1 and iPadOS 17.1. Photos in t…
Ipados
14.1 / 17.1+
HIGH 7.5
CVE-2023-40401
The issue was addressed with additional permissions checks. This issue is fixed in macOS Ventura 13.6.1. An attacker may be able to access passkeys w…
macOS
13.6.1+
HIGH 8.8
CVE-2023-45851
The Android Client application, when enrolled to the AppHub server,connects to an MQTT broker without enforcing any server authentication.
This…
Ctrlx Hmi Web Panel Wr2107 Firmware
Mitigation only
HIGH 8.8
CVE-2023-45220
The Android Client application, when enrolled with the define method 1(the user manually inserts the server ip address), use HTTP protocol to retriev…
Ctrlx Hmi Web Panel Wr2107 Firmware
Mitigation only
HIGH 8.8
CVE-2023-41255
The vulnerability allows an unprivileged user with access to the subnet of the TPC-110W device to gain a root shell on the device itself abusing the …
Ctrlx Hmi Web Panel Wr2107 Firmware
Mitigation only
MEDIUM 6.5
CVE-2023-39231
PingFederate using the PingOne MFA adapter allows a new MFA device to be paired without requiring second factor authentication from an existing regis…
Pingone Mfa Integration Kit
Mitigation only
CRITICAL 9.8
CVE-2023-39930
A first-factor authentication bypass vulnerability exists in the PingFederate with PingID Radius PCV when a MSCHAP authentication request is sent via…
Pingid Radius Pcv
3.0.3+
MEDIUM 5.3
CVE-2023-27256
Missing authentication in the GetLogFiles method in IDAttend’s IDWeb application 3.1.052 and earlier allows retrieval of sensitive log files by una…
Idweb
after 3.1.052
HIGH 7.5
CVE-2023-27257
Missing authentication in the GetActiveToiletPasses method in IDAttend’s IDWeb application 3.1.052 and earlier allows retrieval of student informa…
Idweb
after 3.1.052
HIGH 7.5
CVE-2023-27258
Missing authentication in the GetStudentGroupStudents method in IDAttend’s IDWeb application 3.1.052 and earlier allows retrieval of student and …
Idweb
after 3.1.052
HIGH 7.5
CVE-2023-27259
Missing authentication in the GetAssignmentsDue method in IDAttend’s IDWeb application 3.1.052 and earlier allows extraction of sensitive studen…
Idweb
after 3.1.052
MEDIUM 6.5
CVE-2023-27261
Missing authentication in the DeleteAssignments method in IDAttend’s IDWeb application 3.1.052 and earlier allows deletion of data by unauthe…
Idweb
after 3.1.052
HIGH 7.5
CVE-2023-27375
Missing authentication in the StudentPopupDetails_ContactDetails method in IDAttend’s IDWeb application 3.1.052 and earlier allows extraction o…
Idweb
after 3.1.052
HIGH 7.5
CVE-2023-27376
Missing authentication in the StudentPopupDetails_StudentDetails method in IDAttend’s IDWeb application 3.1.052 and earlier allows extraction o…
Idweb
after 3.1.052
HIGH 7.5
CVE-2023-27377
Missing authentication in the StudentPopupDetails_EmergencyContactDetails method in IDAttend’s IDWeb application 3.1.052 and earlier allows ex…
Idweb
after 3.1.052
HIGH 7.5
CVE-2023-26570
Missing authentication in the StudentPopupDetails_Timetable method in IDAttend’s IDWeb application 3.1.052 and earlier allows extraction sensitive st…
Idweb
after 3.1.052