CWE-862
8,722 CVEs • Abstraction: Class • Likelihood of Exploit: High
Missing Authorization
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
CVEs (8,722)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special path. |
Grafana is an open-source platform for monitoring and observability. The option to send a test alert is not available from the user panel UI for users having the Viewer role. It is still possible for a user with the Vi...Show more |
A security defect in Foundry's Comments functionality resulted in the retrieval of attachments to comments not being gated by additional authorization checks. This could enable an authenticated user to inject a prior dis...Show more |
In email service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In email service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In dialer service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. |
In Connectivity Service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. |
In Connectivity Service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. |
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |
In dialer service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges. |
In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. |