VYPR

CWE-284

Improper Access Control

PillarIncomplete

Description

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-19 · CAPEC-441 · CAPEC-478 · CAPEC-479 · CAPEC-502 · CAPEC-503 · CAPEC-536 · CAPEC-546 · CAPEC-550 · CAPEC-551 · CAPEC-552 · CAPEC-556 · CAPEC-558 · CAPEC-562 · CAPEC-563 · CAPEC-564 · CAPEC-578

CVEs mapped to this weakness (8,080)

page 18 of 404
  • CVE-2025-63223CriNov 19, 2025
    risk 0.64cvss 9.8epss 0.01

    The Axel Technology StreamerMAX MK II devices (firmware versions 0.8.5 to 1.0.3) are vulnerable to Broken Access Control due to missing authentication on the /cgi-bin/gstFcgi.fcgi endpoint. Unauthenticated remote attackers can list user accounts, create new administrative users,…

  • CVE-2025-63218CriNov 19, 2025
    risk 0.64cvss 9.8epss 0.01

    The Axel Technology WOLF1MS and WOLF2MS devices (firmware versions 0.8.5 to 1.0.3) are vulnerable to Broken Access Control due to missing authentication on the /cgi-bin/gstFcgi.fcgi endpoint. Unauthenticated remote attackers can list user accounts, create new administrative…

  • CVE-2025-63225CriNov 18, 2025
    risk 0.64cvss 9.8epss 0.01

    The Eurolab ELTS100_UBX device (firmware version ELTS100v1.UBX) is vulnerable to Broken Access Control due to missing authentication on critical administrative endpoints. Attackers can directly access and modify sensitive system and network configurations, upload firmware, and…

  • CVE-2025-63353CriNov 12, 2025
    risk 0.64cvss 9.8epss 0.01

    A vulnerability in FiberHome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi password (WPA/WPA2 pre-shared key) to be predicted from the SSID. The device generates default passwords using a deterministic algorithm that derives the router passphrase from the…

  • CVE-2025-63666CriNov 12, 2025
    risk 0.64cvss 9.8epss 0.00

    Tenda AC15 v15.03.05.18_multi) issues an authentication cookie that exposes the account password hash to the client and uses a short, low-entropy suffix as the session identifier. An attacker with network access or the ability to run JS in a victim browser can steal the cookie…

  • CVE-2025-48983CriOct 31, 2025
    risk 0.64cvss 9.9epss 0.01

    A vulnerability in the Mount service of Veeam Backup & Replication, which allows for remote code execution (RCE) on the Backup infrastructure hosts by an authenticated domain user.

  • CVE-2025-43027CriOct 30, 2025
    risk 0.64cvss 9.8epss 0.00

    A critical severity vulnerability has been identified in the ALPR Manager role of Security Center that could allow attackers to gain administrative access to the Genetec Security Center system. The Genetec engineering team discovered this issue internally. There is currently no…

  • CVE-2025-27258CriOct 13, 2025
    risk 0.64cvss 9.8epss 0.00

    Ericsson Network Manager (ENM) versions prior to ENM 25.1 GA contain a vulnerability, if exploited, can result in an escalation of privilege.

  • CVE-2025-60306CriOct 10, 2025
    risk 0.64cvss 9.9epss 0.00

    code-projects Simple Car Rental System 1.0 has a permission bypass issue where low privilege users can forge high privilege sessions and perform sensitive operations.

  • CVE-2025-57266CriSep 29, 2025
    risk 0.64cvss 9.8epss 0.00

    An issue was discovered in file AssistantController.java in ThriveX Blogging Framework 2.5.9 thru 3.1.3 allowing unauthenticated attackers to gain sensitive information such as API Keys via the /api/assistant/list endpoint.

  • CVE-2025-50900CriAug 25, 2025
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in getrebuild/rebuild 4.0.4. The affected source code class is com.rebuild.web.RebuildWebInterceptor, and the affected function is preHandle In the filter code, use CodecUtils.urlDecode(request.getRequestURI()) to obtain the URL-decoded request path, and…

  • CVE-2025-29515CriAug 25, 2025
    risk 0.64cvss 9.8epss 0.01

    Incorrect access control in the DELT_file.xgi endpoint of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to modify arbitrary settings within the device's XML database, including the administrator’s password.

  • CVE-2025-29514CriAug 25, 2025
    risk 0.64cvss 9.8epss 0.01

    Incorrect access control in the config.xgi function of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to download the configuration file via providing a crafted web request.

  • CVE-2022-43110CriAug 22, 2025
    risk 0.64cvss 9.8epss 0.01

    Voltronic Power ViewPower through 1.04-21353 and PowerShield Netguard before 1.04-23292 allows a remote attacker to configure the system via an unspecified web interface. An unauthenticated remote attacker can make changes to the system including: changing the web interface…

  • CVE-2024-53496CriAug 22, 2025
    risk 0.64cvss 9.8epss 0.01

    Incorrect access control in the doFilter function of my-site v1.0.2.RELEASE allows attackers to access sensitive components without authentication.

  • CVE-2025-53763CriAug 21, 2025
    risk 0.64cvss 9.8epss 0.01

    Improper access control in Azure Databricks allows an unauthorized attacker to elevate privileges over a network.

  • CVE-2024-57155CriAug 20, 2025
    risk 0.64cvss 9.8epss 0.00

    Incorrect access control in radar v1.0.8 allows attackers to bypass authentication and access sensitive APIs without a token.

  • CVE-2024-57154CriAug 20, 2025
    risk 0.64cvss 9.8epss 0.00

    Incorrect access control in dts-shop v0.0.1-SNAPSHOT allows attackers to bypass authentication via sending a crafted payload to /admin/auth/index.

  • CVE-2024-57157CriAug 20, 2025
    risk 0.64cvss 9.8epss 0.00

    Incorrect access control in Jantent v1.1 allows attackers to bypass authentication and access sensitive APIs without a token.

  • CVE-2025-30127CriAug 6, 2025
    risk 0.64cvss 9.8epss 0.00

    An issue was discovered on Marbella KR8s Dashcam FF 2.0.8 devices. Once access is gained either by default, common, or cracked passwords, the video recordings (containing sensitive routes, conversations, and footage) are open for downloading by creating a socket to command port…