Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-306 (关键功能的认证机制缺失) — Vulnerability Class 1097

1097 vulnerabilities classified as CWE-306 (关键功能的认证机制缺失). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-26278 Sensitive information leakage vulnerability in wifi module — Wifi 6.3 Medium2024-12-17
CVE-2020-12484 vivo Wifi Module 安全漏洞 — Wifi 6.4 Medium2024-12-17
CVE-2024-10205 Authorization bypass vulnerability in Hitachi Infrastructure Analytics Advisor and Hitachi Ops Center Analyzer — Hitachi Ops Center Analyzer 9.4 Critical2024-12-17
CVE-2024-10776 SICK InspectorP61x and SICK InspectorP62x: missing authentication — SICK InspectorP61x 8.2 High2024-12-06
CVE-2024-10774 SICK InspectorP61x and SICK InspectorP62x have unauthenticated CROWN APIs — SICK InspectorP61x 7.3 High2024-12-06
CVE-2024-37303 Synapse unauthenticated writes to the media repository allow planting of problematic content — synapse 5.3 Medium2024-12-03
CVE-2024-50381 Missing Authentication for Critical Function in Snap One OVRC cloud — OVRC cloud 7.5 -2024-12-02
CVE-2024-11980 Billion Electric router - Missing Authentication — M100 8.6 High2024-11-29
CVE-2024-53701 FCNT 访问控制错误漏洞 — arrows N F-51C 5.7 -2024-11-29
CVE-2024-49052 Microsoft Azure PolicyWatch Elevation of Privilege Vulnerability — Microsoft Azure Functions 8.2 High2024-11-26
CVE-2024-11680 ProjectSend Unauthenticated Configuration Modification — ProjectSend 9.8 Critical2024-11-26
CVE-2020-12492 Wifi information acquisition vulnerability in Framework Services — Framework 7.5AIHighAI2024-11-25
CVE-2020-12491 Framework Information Disclosure Vulnerability — Framework 5.5AIMediumAI2024-11-25
CVE-2024-47138 mySCADA myPRO Missing Authentication for Critical Function — myPRO Manager 9.8 Critical2024-11-22
CVE-2024-5721 Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability — Unified SecOps Platform 9.8 -2024-11-22
CVE-2024-5718 Logsign Unified SecOps Platform Missing Authentication Remote Code Execution Vulnerability — Unified SecOps Platform 9.8 -2024-11-22
CVE-2024-38643 Notes Station 3 — Notes Station 3 9.8 -2024-11-22
CVE-2024-21855 GoCast 访问控制错误漏洞 — GoCast 9.8 Critical2024-11-21
CVE-2024-52437 WordPress Banner System plugin <= 1.0.0 - Privilege Escalation vulnerability — Banner System 8.8 High2024-11-20
CVE-2024-52438 WordPress de:branding plugin <= 1.0.2 - Privilege Escalation vulnerability — de:branding 8.8 High2024-11-20
CVE-2024-47865 Rakuten Turbo 5G 安全漏洞 — Rakuten Turbo 5G 5.3 Medium2024-11-20
CVE-2024-0012 PAN-OS: Authentication Bypass in the Management Web Interface (PAN-SA-2024-0015) — Cloud NGFW 9.8AICriticalAI2024-11-18
CVE-2024-41969 WAGO: CODESYS V3 Configuration Authentication Bypass in Multiple Devices — CC100 0751-9x01 8.8 High2024-11-18
CVE-2024-41967 WAGO: Boot Mode Manipulation in Multiple Devices — CC100 0751-9x01 8.1 High2024-11-18
CVE-2024-41968 WAGO: Docker Settings Manipulation in Multiple Devices — CC100 0751-9x01 5.4 Medium2024-11-18
CVE-2024-48966 Life2000 service tools for test and calibration do not support user authentication — Life2000 Ventilation System 10.0 Critical2024-11-14
CVE-2024-26011 Fortinet多款产品 安全漏洞 — FortiManager 5.2 Medium2024-11-12
CVE-2024-8074 Sensetive Data Exposure in Nomysoft Informatics' Nomysem — Nomysem 4.3AIMediumAI2024-11-12
CVE-2024-50589 Unprotected FHIR API — Elefant 5.7 -2024-11-08
CVE-2024-9430 Get Quote For Woocommerce – Request A Quote For Woocommerce <= 1.0.0 - Missing Authorization to Unauthenticated Quote PDF and CSV Download — Get Quote For Woocommerce – Request A Quote For Woocommerce 5.3 Medium2024-10-31

Vulnerabilities classified as CWE-306 (关键功能的认证机制缺失) represent 1097 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.