Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-306 (关键功能的认证机制缺失) — Vulnerability Class 1096

1096 vulnerabilities classified as CWE-306 (关键功能的认证机制缺失). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2023-46096 Siemens SIMATIC PCS 安全漏洞 — SIMATIC PCS neo 6.5 Medium2023-11-14
CVE-2023-45140 Group-based JIT MFA bypass on scp and sftp in The Bastion — the-bastion 4.8 Medium2023-11-08
CVE-2023-46819 Apache OFBiz: Execution of Solr plugin queries without authentication — Apache OFBiz 9.8 -2023-11-07
CVE-2023-4699 Arbitrary Command Execution Vulnerability in Mitsubishi Electric proprietary protocol communication of multiple FA products — MELSEC-F Series FX3U-16MT/ES 10.0 Critical2023-11-06
CVE-2023-45851 Bosch ctrlX HMI Web Panel WR21 访问控制错误漏洞 — ctrlX HMI Web Panel - WR21 (WR2107) 8.8 High2023-10-25
CVE-2023-45220 Bosch ctrlX HMI Web Panel WR21 访问控制错误漏洞 — ctrlX HMI Web Panel - WR21 (WR2107) 8.8 High2023-10-25
CVE-2023-41255 Bosch ctrlX HMI Web Panel WR21 访问控制错误漏洞 — ctrlX HMI Web Panel - WR21 (WR2107) 8.8 High2023-10-25
CVE-2023-27261 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 5.3 Medium2023-10-25
CVE-2023-27377 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-27376 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-27375 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-27259 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-27258 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-27257 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-27256 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 5.8 Medium2023-10-25
CVE-2023-26580 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-26579 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 5.3 Medium2023-10-25
CVE-2023-26576 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-26575 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-26574 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-26573 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 8.2 High2023-10-25
CVE-2023-26571 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-26570 Missing Authentication In IDAttend’s IDWeb Application — IDWeb 7.5 High2023-10-25
CVE-2023-44116 Huawei HarmonyOS 访问控制错误漏洞 — HarmonyOS 9.4 -2023-10-11
CVE-2023-4884 Multiple vulnerabilities in Open5GS — Open5GS 6.5 Medium2023-10-03
CVE-2023-44152 Acronis Cyber Protect 安全漏洞 — Acronis Cyber Protect 15 9.1 -2023-09-27
CVE-2023-41333 Bypass of namespace restrictions in CiliumNetworkPolicy — cilium 6.9 Medium2023-09-26
CVE-2023-36851 Junos OS: SRX Series: A vulnerability in J-Web allows an unauthenticated attacker to upload and download arbitrary files — Junos OS 5.3 Medium2023-09-26
CVE-2023-4505 Staff / Employee Business Directory for Active Directory <= 1.2.3 - Authenticated (Admin+) LDAP Passback — Staff/Employee Business Directory for Active Directory 2.2 Low2023-09-26
CVE-2023-4506 Active Directory Integration / LDAP Integration <= 4.1.10 - LDAP Passback — Active Directory Integration / LDAP Integration 2.2 Low2023-09-26

Vulnerabilities classified as CWE-306 (关键功能的认证机制缺失) represent 1096 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.