CWE-862
8,735 CVEs • Abstraction: Class • Likelihood of Exploit: High
Missing Authorization
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
CVEs (8,735)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In validationtools, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
Improper Access Control in Dolibarr ERP CRM <= v17.0.3 allows an unauthorized authenticated user to read a database table containing customer data |
The vulnerability exists in Syska SW100 Smartwatch due to an improper implementation and/or configuration of Nordic Device Firmware Update (DFU) which is used for performing Over-The-Air (OTA) firmware updates on the Blu...Show more |
Missing Authorization in GitHub repository hamza417/inure prior to Build95. |
In Settings, there is a possible way for the user to change SIM due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not...Show more |
In Settings, there is a possible bypass of profile owner restrictions due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction i...Show more |
In Settings, there is a possible restriction bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for e...Show more |
In Content Resolver, there is a possible method to access metadata about existing content providers on the device due to a missing permission check. This could lead to local information disclosure with no additional exec...Show more |
In Telecomm, there is a possible way to silence the ring for calls of secondary users due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. Us...Show more |
In Telephony, there is a possible way for a guest user to change the preferred SIM due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User...Show more |