VYPR

CWE-639

Authorization Bypass Through User-Controlled Key

BaseIncompleteLikelihood: High

Description

The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.

Hierarchy (View 1000)

Parents

Children

CVEs mapped to this weakness (2,283)

page 45 of 115
  • CVE-2022-29008MedMay 11, 2022
    risk 0.42cvss 6.5epss 0.01

    An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allows attackers to access sensitive information.

  • CVE-2021-38362MedMar 30, 2022
    risk 0.42cvss 6.5epss 0.01

    In RSA Archer 6.x through 6.9 SP3 (6.9.3.0), an authenticated attacker can make a GET request to a REST API endpoint that is vulnerable to an Insecure Direct Object Reference (IDOR) issue and retrieve sensitive data.

  • CVE-2021-40579MedDec 28, 2021
    risk 0.42cvss 6.5epss 0.01

    https://www.sourcecodester.com/ Online Enrollment Management System in PHP and PayPal Free Source Code 1.0 is affected by: Incorrect Access Control. The impact is: gain privileges (remote).

  • CVE-2021-36329MedNov 30, 2021
    risk 0.42cvss 6.5epss 0.01

    Dell EMC Streaming Data Platform versions before 1.3 contain an Indirect Object Reference Vulnerability. A remote malicious user may potentially exploit this vulnerability to gain sensitive information.

  • CVE-2021-3380MedNov 10, 2021
    risk 0.42cvss 6.5epss 0.01

    Insecure direct object reference (IDOR) vulnerability in ICREM H8 SSRMS allows attackers to disclose sensitive information via the Print Invoice Functionality.

  • CVE-2021-41120HigOct 5, 2021
    risk 0.42cvss 7.5epss 0.02

    sylius/paypal-plugin is a paypal plugin for the Sylius development platform. In affected versions the URL to the payment page done after checkout was created with autoincremented payment id (/pay-with-paypal/{id}) and therefore it was easy to predict. The problem is that the…

  • CVE-2021-38624MedSep 15, 2021
    risk 0.42cvss 6.5epss 0.02

    Windows Key Storage Provider Security Feature Bypass Vulnerability

  • CVE-2021-22906MedJun 11, 2021
    risk 0.42cvss 6.5epss 0.01

    Nextcloud End-to-End Encryption before 1.5.3, 1.6.3 and 1.7.1 suffers from a denial of service vulnerability due to permitting any authenticated users to lock files of other users.

  • CVE-2021-24318MedJun 1, 2021
    risk 0.42cvss 6.5epss 0.01

    The Listeo WordPress theme before 1.6.11 did not ensure that the Post/Page and Booking to delete belong to the user making the request, allowing any authenticated users to delete arbitrary page/post and booking via an IDOR vector.

  • CVE-2020-35849HigDec 30, 2020
    risk 0.42cvss 7.5epss 0.02

    An issue was discovered in MantisBT before 2.24.4. An incorrect access check in bug_revision_view_page.php allows an unprivileged attacker to view the Summary field of private issues, as well as bugnotes revisions, gaining access to potentially confidential information via the…

  • CVE-2020-26175MedDec 18, 2020
    risk 0.42cvss 6.5epss 0.01

    In tangro Business Workflow before 1.18.1, an attacker can manipulate the value of PERSON in requests to /api/profile in order to change profile information of other users.

  • CVE-2020-27742MedOct 28, 2020
    risk 0.42cvss 6.5epss 0.01

    An Insecure Direct Object Reference vulnerability in Citadel WebCit through 926 allows authenticated remote attackers to read someone else's emails via the msg_confirm_move template. NOTE: this was reported to the vendor in a publicly archived "Multiple Security Vulnerabilities…

  • CVE-2020-10779MedAug 11, 2020
    risk 0.42cvss 6.5epss 0.01

    Red Hat CloudForms 4.7 and 5 leads to insecure direct object references (IDOR) and functional level access control bypass due to missing privilege check. Therefore, if an attacker knows the right criteria, it is possible to access some sensitive data within the CloudForms.

  • CVE-2020-8791MedMay 4, 2020
    risk 0.42cvss 6.5epss 0.01

    The OKLOK (3.1.1) mobile companion app for Fingerprint Bluetooth Padlock FB50 (2.3) allows remote attackers to submit API requests using authenticated but unauthorized tokens, resulting in IDOR issues. A remote attacker can use their own token to make unauthorized API requests…

  • CVE-2020-11009MedApr 29, 2020
    risk 0.42cvss 6.5epss 0.01

    In Rundeck before version 3.2.6, authenticated users can craft a request that reveals Execution data and logs and Job details that they are not authorized to see. Depending on the configuration and the way that Rundeck is used, this could result in anything between a high…

  • CVE-2019-19946MedMar 16, 2020
    risk 0.42cvss 6.5epss 0.01

    The API in Dradis Pro 3.4.1 allows any user to extract the content of a project, even if this user is not part of the project team.

  • CVE-2020-5539MedMar 2, 2020
    risk 0.42cvss 6.5epss 0.01

    GRANDIT Ver.1.6, Ver.2.0, Ver.2.1, Ver.2.2, Ver.2.3, and Ver.3.0 do not properly manage sessions, which allows remote attackers to impersonate an arbitrary user and then alter or disclose the information via unspecified vectors.

  • CVE-2020-8503MedJan 31, 2020
    risk 0.42cvss 6.5epss 0.01

    Biscom Secure File Transfer (SFT) 5.0.1050 through 5.1.1067 and 6.0.1000 through 6.0.1003 allows Insecure Direct Object Reference (IDOR) by an authenticated sender because of an error in a file-upload feature. This is fixed in 5.1.1068 and 6.0.1004.

  • CVE-2019-5469MedDec 18, 2019
    risk 0.42cvss 6.5epss 0.01

    An IDOR vulnerability exists in GitLab <v12.1.2, <v12.0.4, and <v11.11.6 that allowed uploading files from project archive to replace other users files potentially allowing an attacker to replace project binaries or other uploaded assets.

  • CVE-2019-15815MedNov 12, 2019
    risk 0.42cvss 6.5epss 0.01

    ZyXEL P-1302-T10D v3 devices with firmware version 2.00(ABBX.3) and earlier do not properly enforce access control and could allow an unauthorized user to access certain pages that require admin privileges.