VYPR

CWE-285

Improper Authorization

ClassDraftLikelihood: High

Description

The product does not perform or incorrectly performs an authorization check when an actor attempts to access a resource or perform an action.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-1 · CAPEC-104 · CAPEC-127 · CAPEC-13 · CAPEC-17 · CAPEC-39 · CAPEC-402 · CAPEC-45 · CAPEC-5 · CAPEC-51 · CAPEC-59 · CAPEC-60 · CAPEC-647 · CAPEC-668 · CAPEC-76 · CAPEC-77 · CAPEC-87

CVEs mapped to this weakness (1,626)

page 8 of 82
  • CVE-2024-32881CriApr 26, 2024
    risk 0.57cvss 9.8epss 0.01

    Danswer is the AI Assistant connected to company's docs, apps, and people. Danswer is vulnerable to unauthorized access to GET/SET of Slack Bot Tokens. Anyone with network access can steal slack bot tokens and set them. This implies full compromise of the customer's slack bot,…

  • CVE-2024-25108CriFeb 12, 2024
    risk 0.57cvss 9.9epss 0.01

    Pixelfed is an open source photo sharing platform. When processing requests authorization was improperly and insufficiently checked, allowing attackers to access far more functionality than users intended, including to the administrative and moderator functionality of the…

  • CVE-2023-40683HigJan 19, 2024
    risk 0.57cvss 8.8epss 0.01

    IBM OpenPages with Watson 8.3 and 9.0 could allow remote attacker to bypass security restrictions, caused by insufficient authorization checks. By authenticating as an OpenPages user and using non-public APIs, an attacker could exploit this vulnerability to bypass security and…

  • CVE-2023-6878HigJan 11, 2024
    risk 0.57cvss 8.8epss 0.00

    The Slick Social Share Buttons plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'dcssb_ajax_update' function in versions up to, and including, 2.4.11. This makes it possible for authenticated attackers, with…

  • CVE-2023-48252HigJan 10, 2024
    risk 0.57cvss 8.8epss 0.01

    The vulnerability allows an authenticated remote attacker to perform actions exceeding their authorized access via crafted HTTP requests.

  • CVE-2023-42491HigOct 25, 2023
    risk 0.57cvss 8.8epss 0.01

    EisBaer Scada - CWE-285: Improper Authorization

  • CVE-2021-4334HigOct 20, 2023
    risk 0.57cvss 8.8epss 0.01

    The Fancy Product Designer plugin for WordPress is vulnerable to unauthorized modification of site options due to a missing capability check on the fpd_update_options function in versions up to, and including, 4.6.9. This makes it possible for authenticated attackers with…

  • CVE-2023-28055HigSep 27, 2023
    risk 0.57cvss 8.8epss 0.00

    Dell NetWorker, Version 19.7 has an improper authorization vulnerability in the NetWorker client. An unauthenticated attacker within the same network could potentially exploit this by manipulating a command leading to gain of complete access to the server file further resulting…

  • CVE-2023-4243HigAug 9, 2023
    risk 0.57cvss 8.8epss 0.01

    The FULL - Customer plugin for WordPress is vulnerable to Arbitrary File Upload via the /install-plugin REST route in versions up to, and including, 2.2.3 due to improper authorization. This allows authenticated attackers with subscriber-level permissions and above to execute…

  • CVE-2023-28634HigApr 5, 2023
    risk 0.57cvss 8.8epss 0.01

    GLPI is a free asset and IT management software package. Starting in version 0.83 and prior to versions 9.5.13 and 10.0.7, a user who has the Technician profile could see and generate a Personal token for a Super-Admin. Using such token it is possible to negotiate a GLPI session…

  • CVE-2023-0822HigFeb 17, 2023
    risk 0.57cvss 8.8epss 0.01

    The affected product DIAEnergie (versions prior to v1.9.03.001) contains improper authorization, which could allow an unauthorized user to bypass authorization and access privileged functionality.

  • CVE-2022-34446HigFeb 11, 2023
    risk 0.57cvss 8.8epss 0.01

    PowerPath Management Appliance with versions 3.3 & 3.2* contains Authorization Bypass vulnerability. An authenticated remote user with limited privileges (e.g., of role Monitoring) can exploit this issue and gain access to sensitive information, and modify the configuration. …

  • CVE-2023-21549HigJan 10, 2023
    risk 0.57cvss 8.8epss 0.01

    Windows SMB Witness Service Elevation of Privilege Vulnerability

  • CVE-2022-36453HigOct 25, 2022
    risk 0.57cvss 8.8epss 0.01

    A vulnerability in the MiCollab Client API of Mitel MiCollab 9.1.3 through 9.5.0.101 could allow an authenticated attacker to modify their profile parameters due to improper authorization controls. A successful exploit could allow the authenticated attacker to control another…

  • CVE-2022-20921HigAug 25, 2022
    risk 0.57cvss 8.8epss 0.01

    A vulnerability in the API implementation of Cisco ACI Multi-Site Orchestrator (MSO) could allow an authenticated, remote attacker to elevate privileges on an affected device. This vulnerability is due to improper authorization on specific APIs. An attacker could exploit this…

  • CVE-2022-30670HigJun 16, 2022
    risk 0.57cvss 8.8epss 0.01

    RoboHelp Server earlier versions than RHS 11 Update 3 are affected by an Improper Authorization vulnerability which could lead to privilege escalation. An authenticated attacker could leverage this vulnerability to achieve full administrator privileges. Exploitation of this…

  • CVE-2021-43939HigApr 28, 2022
    risk 0.57cvss 8.8epss 0.01

    Elcomplus SmartPTT is vulnerable when a low-authenticated user can access higher level administration authorization by issuing requests directly to the desired endpoints.

  • CVE-2021-21693CriNov 4, 2021
    risk 0.57cvss 9.8epss 0.02

    When creating temporary files, agent-to-controller access to create those files is only checked after they've been created in Jenkins 2.318 and earlier, LTS 2.303.2 and earlier.

  • CVE-2021-42330HigOct 15, 2021
    risk 0.57cvss 8.8epss 0.01

    The “Teacher Edit” function of ShinHer StudyOnline System does not perform authority control. After logging in with user’s privilege, remote attackers can access and edit other users’ credential and personal information by crafting URL parameters.

  • CVE-2021-39317HigOct 11, 2021
    risk 0.57cvss 8.8epss 0.02

    A WordPress plugin and several WordPress themes developed by AccessPress Themes are vulnerable to malicious file uploads via the plugin_offline_installer AJAX action due to a missing capability check in the plugin_offline_installer_callback function found in the…