A missing authentication for critical function vulnerability has been identified in Baylan Measuring Instruments Industry and Trade Inc.'s Baylan Smart Meter Management Application (BMS). The vulnerability allows attackers to bypass authentication mechanisms entirely, potentially gaining unauthorized access to critical meter management functions. All versions of the BMS application prior to v1.1.10.142 are affected. The vulnerability is tracked as CVE-2026-15706 and has been assigned a high criticality rating. It was reported via the Turkish cybersecurity authority siberguvenlik.gov.tr. Users are advised to upgrade to version v1.1.10.142 or later to remediate this issue. The vulnerability is classified under CWE for missing authentication for critical functions, which is a fundamental security control failure.