VYPR

CWE-639

Authorization Bypass Through User-Controlled Key

BaseIncompleteLikelihood: High

Description

The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.

Hierarchy (View 1000)

Parents

Children

CVEs mapped to this weakness (2,332)

page 24 of 117
  • CVE-2025-63248HigNov 5, 2025
    risk 0.49cvss 7.5epss 0.00

    DWSurvey 6.14.0 is vulnerable to Incorrect Access Control. When deleting a questionnaire, replacing the questionnaire ID with the ID of another questionnaire can enable the deletion of other questionnaires.

  • CVE-2025-41020HigOct 16, 2025
    risk 0.49cvss 7.5epss 0.00

    Insecure direct object reference (IDOR) vulnerability in Sergestec's Exito v8.0. This vulnerability allows an attacker to access data belonging to other customers through the 'id' parameter in '/admin/ticket_a4.php'.

  • CVE-2025-9902HigOct 13, 2025
    risk 0.49cvss 7.5epss 0.00

    Authorization Bypass Through User-Controlled Key vulnerability in AKIN Software Computer Import Export Industry and Trade Co. Ltd. QRMenu allows Privilege Abuse. This issue affects QRMenu: from 1.05.12 before Version dated 05.09.2025.

  • CVE-2025-41098HigSep 30, 2025
    risk 0.49cvss 7.5epss 0.00

    Insecure Direct Object Reference (IDOR) vulnerability in BOLD Workplanner in versions prior to 2.5.25 (4935b438f9b), consisting of a  misuse of the general enquiry web service.

  • CVE-2025-5261HigAug 20, 2025
    risk 0.49cvss 7.5epss 0.00

    Authorization Bypass Through User-Controlled Key vulnerability in Pik Online Yazılım Çözümleri A.Ş. Pik Online allows Exploitation of Trusted Identifiers. This issue affects Pik Online: before 3.1.5.

  • CVE-2025-53208HigAug 20, 2025
    risk 0.49cvss 7.5epss 0.00

    Authorization Bypass Through User-Controlled Key vulnerability in paymayapg Maya Business paymaya-checkout-for-woocommerce allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Maya Business: from n/a through <= 1.2.0.

  • CVE-2025-51628HigAug 5, 2025
    risk 0.49cvss 7.5epss 0.00

    Insecure Direct Object Reference (IDOR) vulnerability in PdfHandler component in Agenzia Impresa Eccobook v2.81.1 and below allows unauthenticated attackers to read confidential documents via the DocumentoId parameter.

  • CVE-2025-51869HigJul 21, 2025
    risk 0.49cvss 7.5epss 0.00

    Insecure Direct Object Reference (IDOR) vulnerability in Liner thru 2025-06-03 allows attackers to gain sensitive information via crafted space_id, thread_id, and message_id parameters to the v1/space/{space_id}/thread/{thread_id}/message/{message_id} endpoint.

  • CVE-2025-51868HigJul 21, 2025
    risk 0.49cvss 7.5epss 0.00

    Insecure Direct Object Reference (IDOR) vulnerability in Dippy (chat.dippy.ai) v2 allows attackers to gain sensitive information via the conversation_id parameter to the conversation_history endpoint.

  • CVE-2025-4129HigJul 21, 2025
    risk 0.49cvss 7.5epss 0.00

    Authorization Bypass Through User-Controlled Key vulnerability in PAVO Inc. PAVO Pay allows Exploitation of Trusted Identifiers. This issue affects PAVO Pay: before 13.05.2025.

  • CVE-2025-1469HigJul 21, 2025
    risk 0.49cvss 7.5epss 0.00

    Authorization Bypass Through User-Controlled Key vulnerability in Turtek Software Eyotek allows Exploitation of Trusted Identifiers. This issue affects Eyotek: before 11.03.2025.

  • CVE-2025-3091HigJun 24, 2025
    risk 0.49cvss 7.5epss 0.00

    An low privileged remote attacker in possession of the second factor for another user can login as that user without knowledge of the other user`s password.

  • CVE-2025-40661HigJun 10, 2025
    risk 0.49cvss 7.5epss 0.00

    An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option parameter equal to 0, 1 or 2 in /administer/selectionnode/selection.asp.

  • CVE-2025-40660HigJun 10, 2025
    risk 0.49cvss 7.5epss 0.00

    An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option parameter equal to 0, 1 or 2 in /administer/select node/data.asp?mode=catalogue&id1=1&id2=1session=&…

  • CVE-2025-40659HigJun 10, 2025
    risk 0.49cvss 7.5epss 0.00

    An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option parameter equal to 0, 1 or 2 in /administer/selectionnode/framesSelectionNetworks.asp.

  • CVE-2025-40658HigJun 10, 2025
    risk 0.49cvss 7.5epss 0.00

    An Insecure Direct Object Reference (IDOR) vulnerability has been found in DM Corporative CMS. This vulnerability allows an attacker to access the private area setting the option parameter equal to 0, 1 or 2 in /administer/selectionnode/framesSelection.asp.

  • CVE-2025-48207HigMay 21, 2025
    risk 0.49cvss 8.6epss 0.00

    The reint_downloadmanager extension through 5.0.0 for TYPO3 allows Insecure Direct Object Reference.

  • CVE-2025-27939HigApr 15, 2025
    risk 0.49cvss 7.5epss 0.01

    An attacker can change registered email addresses of other users and take over arbitrary accounts.

  • CVE-2025-22931HigApr 3, 2025
    risk 0.49cvss 7.5epss 0.00

    An insecure direct object reference (IDOR) in the component /assets/stafffiles of OS4ED openSIS v7.0 to v9.1 allows unauthenticated attackers to access files uploaded by staff members.

  • CVE-2024-13558HigMar 20, 2025
    risk 0.49cvss 7.5epss 0.00

    The NP Quote Request for WooCommerce plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.9.179 due to missing validation on a user controlled key. This makes it possible for unauthenticated attackers to read the content…