Fallos del tipo CWE-306

1710 resultados
CVE-2022-38057MEDIUMWordPress TH Advance Product Search plugin <= 1.2.1 - Unauthenticated Plugin Settings Reset vulnerabilityEPSS 0.6%CVE-2026-53869HIGHHermes Agent < 0.16.0 - DNS Rebinding Bypass via WebSocket EndpointsEPSS 0.6%CVE-2024-35293CRITICALSchneider Elektronik Series 700 prone to missing authentication for critical reset functionEPSS 0.6%CVE-2023-32680MEDIUMMissing SQL permissions check in metabaseEPSS 0.6%CVE-2024-8053HIGHImproper Authentication in open-webui/open-webuiEPSS 0.6%CVE-2026-40050CRITICALCrowdStrike LogScale Unauthenticated Path TraversalEPSS 0.6%CVE-2024-41988CRITICALMissing Authentication for Critical Function vulnerability in TEM Opera Plus FM Family TransmitterEPSS 0.6%CVE-2020-36874HIGHACE SECURITY WIP-90113 Unauthenticated Configuration DisclosureEPSS 0.6%CVE-2023-2187MEDIUMOn Triangle MicroWorks' SCADA Data Gateway version <= v5.01.03, an unauthenticated attacker can send broadcast events to any user via the WeEPSS 0.6%CVE-2024-1573MEDIUMMissing Authentication for Critical Function vulnerability in the mobile monitoring feature of Mitsubishi Electric GENESIS64 versions 10.97.EPSS 0.6%CVE-2023-49115HIGHMachineSense FeverWarn Missing Authentication for Critical FunctionEPSS 0.6%CVE-2023-22803HIGHCVE-2023-22803EPSS 0.6%CVE-2026-47281CRITICALVisual Studio Code Elevation of Privilege VulnerabilityEPSS 0.6%CVE-2021-4468HIGHPLANEX CS-QP50F-ING2 Smart Camera Remote Configuration DisclosureEPSS 0.6%CVE-2024-6981CRITICALOMNTEC Proteus Tank Monitoring Missing Authentication for Critical FunctionEPSS 0.6%CVE-2018-25332CRITICALGitBucket 4.23.1 Unauthenticated Remote Code ExecutionEPSS 0.6%CVE-2022-41629HIGH Delta Electronics InfraSuite Device Master versions 00.00.01a and prior allow unauthenticated users to access the aprunning endpoint, whichEPSS 0.6%CVE-2024-26011MEDIUMA missing authentication for critical function in Fortinet FortiManager version 7.4.0 through 7.4.2, 7.2.0 through 7.2.4, 7.0.0 through 7.0.EPSS 0.6%CVE-2026-35546CRITICALAnviz Products Missing Authentication for Critical FunctionEPSS 0.6%CVE-2021-47933CRITICALWordPress MStore API 2.0.6 Arbitrary File UploadEPSS 0.6%