CWE-862
10,072 CVEs • Abstraction: Class • Likelihood of Exploit: High
Missing Authorization
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
CVEs (10,072)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In Messaging, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges |
In SoundRecorder service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges |
In Telecom service, there is a possible missing permission check. This could lead to local denial of service with System execution privileges needed |
In telecom service, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges |
In telecom service, there is a possible way to write permission usage records of an app due to a missing permission check. This could lead to local information disclosure with System execution privileges needed |
In linkturbo, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed |
In phasechecksercer, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed |
In phasecheckserver, there is a possible missing permission check. This could lead to local information disclosure with no additional execution privileges needed |
In Dialer, there is a possible missing permission check. This could lead to local information disclosure with System execution privileges needed |
In visitUris of Notification.java, there is a possible way to reveal image contents from another user due to a missing permission check. This could lead to local information disclosure with User execution privileges need...Show more |
In visitUris of Notification.java, there is a possible bypass of user profile boundaries due to a missing permission check. This could lead to local escalation of privilege with User execution privileges needed. User int...Show more |
Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agent (Linux, macOS, Windows) before build 36343, Acronis Cyber Protect 16...Show more |