Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-306 (关键功能的认证机制缺失) — Vulnerability Class 1096

1096 vulnerabilities classified as CWE-306 (关键功能的认证机制缺失). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2025-34039 Yonyou NC BeanShell Command Injection — UFIDA NC 9.8AICriticalAI2025-06-24
CVE-2025-3319 IBM Spectrum Protect Server authentication bypass — Spectrum Protect Server 8.1 High2025-06-20
CVE-2025-32896 Apache SeaTunnel: Unauthenticated insecure access — Apache SeaTunnel 9.8AICriticalAI2025-06-19
CVE-2025-25265 Unauthenticated File Read via Web Interface — WAGO CC100 0751-9x01 4.9 Medium2025-06-16
CVE-2025-49596 MCP Inspector proxy server lacks authentication between the Inspector client and proxy — inspector 9.8AICriticalAI2025-06-13
CVE-2024-35295 Siemens SINAMICS PERFECT HARMONY GH180 访问控制错误漏洞 — Perfect Harmony GH180 6.1 Medium2025-06-11
CVE-2024-9062 macOS Archify: Local Privilege Escalation — Archify 7.8 High2025-06-10
CVE-2025-5906 code-projects Laundry System data missing authentication — Laundry System 7.3 High2025-06-10
CVE-2025-26468 CyberData 011209 SIP Emergency Intercom Missing Authentication for Critical Function — 011209 SIP Emergency Intercom 7.5 High2025-06-09
CVE-2025-49652 Improper access control allows arbitrary account creation — BackendAI 9.8 Critical2025-06-09
CVE-2025-5876 Lucky LM-520-SC/LM-520-FSC/LM-520-FSC-SAM missing authentication — LM-520-SC 5.3 Medium2025-06-09
CVE-2025-5872 eGauge EG3000 Energy Monitor Setting missing authentication — EG3000 Energy Monitor 5.3 Medium2025-06-09
CVE-2025-5871 Papendorf SOL Connect Center Web Interface missing authentication — SOL Connect Center 5.3 Medium2025-06-09
CVE-2025-3461 ON Semiconductor Quantenna Telnet Missing Authentication — Quantenna Wi-Fi chipset 9.1 Critical2025-06-08
CVE-2024-55585 moPS App 安全漏洞 — moPS 9.8AICriticalAI2025-06-07
CVE-2025-5192 Soar Cloud HRD Human Resource Management System - Missing Authentication for Critical Function — HRD Human Resource Management System 9.8AICriticalAI2025-06-06
CVE-2025-5719 Vivo wallet 安全漏洞 — Wallet 9.1AICriticalAI2025-06-06
CVE-2025-47272 PhoenixCart Vulnerable to Account Deletion Without Password Confirmation — PhoenixCart 5.5 Medium2025-06-02
CVE-2025-1907 Instantel Micromate Missing Authentication for Critical Function — Micromate 9.8 Critical2025-05-29
CVE-2025-22252 Fortinet FortiOS 访问控制错误漏洞 — FortiProxy 9.0 Critical2025-05-28
CVE-2025-32440 NetAlertX Vulnerable to Authentication Bypass — NetAlertX 10.0 Critical2025-05-27
CVE-2025-41651 Weidmueller: Missing Authentication Vulnerability in Industrial Ethernet Switches — IE-SW-VL05M-5TX 9.8 Critical2025-05-27
CVE-2025-2407 Missing Authentication & Authorization in Web-API allows adversary unrestricted access — AMX MTAPI 9.4AICriticalAI2025-05-27
CVE-2025-48742 SIGB PMB 访问控制错误漏洞 — PMB 5.4 Medium2025-05-27
CVE-2025-40664 Missing authentication vulnerability in TCMAN GIM v11 — GIM 9.8AICriticalAI2025-05-26
CVE-2025-41655 PEPPERL+FUCHS: Attacker can cause a DoS via URL — Profinet Gateway FB8122A.1.EL 7.5 High2025-05-26
CVE-2025-41654 PEPPERL+FUCHS: Profinet Gateway LB8122A.1.EL – Device is affected by information disclosure via the SNMP protocol — Profinet Gateway FB8122A.1.EL 8.2 High2025-05-26
CVE-2025-36535 AutomationDirect MB-Gateway Missing Authentication for Critical Function — MB-Gateway 10.0 Critical2025-05-21
CVE-2025-27803 Missing Authentication in eCharge Hardy Barth cPH2 / cPP2 charging stations — cPH2 / cPP2 charging stations 9.8AICriticalAI2025-05-21
CVE-2025-47850 JetBrains YouTrack 访问控制错误漏洞 — YouTrack 4.3 Medium2025-05-20

Vulnerabilities classified as CWE-306 (关键功能的认证机制缺失) represent 1096 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.