CWE-425
240 CVEs • Abstraction: Base
Direct Request ('Forced Browsing')
The web application does not adequately enforce appropriate authorization on all restricted URLs, scripts, or files.
CVEs (240)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Pangea Communications Internet FAX ATA all Versions 3.1.8 and prior allow an attacker to bypass user authentication using a specially crafted URL to cause the device to reboot, which may be used to cause a continual deni...Show more |
D-Link DIR-600M C1 3.04 devices allow authentication bypass via a direct request to the wan.htm page. NOTE: this may overlap CVE-2019-13101. |
1Advance Peer To Peer Mlm Script Project 1Advance Peer To Peer Mlm Script Jun 17, 2026 Jan 11, 2019 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 The Admin Panel of PHP Scripts Mall Advance Peer to Peer MLM Script v1.7.0 allows remote attackers to bypass intended access restrictions by directly navigating to admin/dashboard.php or admin/user.php, as demonstrated b...Show more |
1Mcafee 1Application Change Control Jun 17, 2026 Dec 20, 2018 N/A· v4 8.0 HIGH· v3 5.2 MEDIUM· v2 A whitelist bypass vulnerability in McAfee Application Control / Change Control 7.0.1 and before allows a remote or local user to execute blacklisted files through an ASP.NET form. |
add_user in AbiSoft Ticketly 1.0 allows remote attackers to create administrator accounts via an action/add_user.php POST request. |
ShowDoc 2.4.1 allows remote attackers to edit other users' notes by navigating with a modified page_id. |
1Van Ons 1Wp Gdpr Compliance Nov 21, 2024 Nov 12, 2018 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 The Van Ons WP GDPR Compliance (aka wp-gdpr-compliance) plugin before 1.4.3 for WordPress allows remote attackers to execute arbitrary code because $wpdb->prepare() input is mishandled, as exploited in the wild in Novemb...Show more |
2Debian Otrs2Debian Linux Open Ticket Request SystemNov 21, 2024 Nov 11, 2018 N/A· v4 6.5 MEDIUM· v3 5.5 MEDIUM· v2 Open Ticket Request System (OTRS) 4.0.x before 4.0.33, 5.0.x before 5.0.31, and 6.0.x before 6.0.13 allows an authenticated user to delete files via a modified submission form because upload caching is mishandled. |
tianti 2.3 allows remote authenticated users to bypass intended permission restrictions by visiting tianti-module-admin/cms/column/list directly to read the column list page or edit a column. |
LG SuperSign CMS allows TVs to be rebooted remotely without authentication via a direct HTTP request to /qsr_server/device/reboot on port 9080. |
1Url Parse Project 1Url Parse Nov 21, 2024 Aug 12, 2018 N/A· v4 10.0 CRITICAL· v3 7.5 HIGH· v2 Incorrect parsing in url-parse <1.4.3 returns wrong hostname which leads to multiple vulnerabilities such as SSRF, Open Redirect, Bypass Authentication Protocol. |
1Beaconmedaes 1Scroll Medical Air Systems Firmware Jun 17, 2026 May 24, 2018 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 In TotalAlert Web Application in BeaconMedaes Scroll Medical Air Systems prior to v4107600010.23, by accessing a specific uniform resource locator (URL) on the webserver, a malicious user may be able to access informatio...Show more |
An insecure direct object reference vulnerability in download.cgi in ASUSTOR AS6202T ADM 3.1.0.RFQ3 allows the ability to reference the "download_sys_settings" action and then specify files arbitrarily throughout the sys...Show more |
1Cisco 1Unified Communications Manager Nov 21, 2024 Apr 19, 2018 N/A· v4 6.5 MEDIUM· v3 2.1 LOW· v2 A vulnerability in the web framework of Cisco Unified Communications Manager could allow an authenticated, local attacker to view sensitive data that should be restricted. This could include LDAP credentials. The vulnera...Show more |
1Cisco 1Unified Communications Manager Nov 21, 2024 Apr 19, 2018 N/A· v4 4.3 MEDIUM· v3 4.0 MEDIUM· v2 A vulnerability in the web framework of Cisco Unified Communications Manager could allow an authenticated, remote attacker to view sensitive data. The vulnerability is due to insufficient protection of database tables ov...Show more |
1Cisco 1Unified Communications Manager Nov 21, 2024 Mar 27, 2018 N/A· v4 5.3 MEDIUM· v3 5.0 MEDIUM· v2 A vulnerability in the web framework of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to view sensitive data. The vulnerability is due to insufficient protection of database tables....Show more |
Kentico 9.0 before 9.0.51 and 10.0 before 10.0.48 allows remote attackers to obtain Global Administrator access by visiting CMSInstall/install.aspx and then navigating to the CMS Administration Dashboard. |
OXID eShop Community Edition before 6.0.0 RC3 (development), 4.10.x before 4.10.6 (maintenance), and 4.9.x before 4.9.11 (legacy), Enterprise Edition before 6.0.0 RC3 (development), 5.2.x before 5.2.11 (legacy), and 5.3....Show more |
1Cisco 2Content Security Management Appliance Email Security Appliance FirmwareNov 21, 2024 Feb 8, 2018 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A vulnerability in the spam quarantine of Cisco Email Security Appliance and Cisco Content Security Management Appliance could allow an authenticated, remote attacker to download any message from the spam quarantine by m...Show more |
OMRON NS devices 1.1 through 1.3 allow remote attackers to bypass authentication via a direct request to the .html file for a specific screen, as demonstrated by monitor.html. |