VYPR

CWE-639

Authorization Bypass Through User-Controlled Key

BaseIncompleteLikelihood: High

Description

The system's authorization functionality does not prevent one user from gaining access to another user's data or record by modifying the key value identifying the data.

Hierarchy (View 1000)

Parents

Children

CVEs mapped to this weakness (2,283)

page 84 of 115
  • CVE-2019-17604MedNov 7, 2019
    risk 0.28cvss 4.3epss 0.01

    An Insecure Direct Object Reference (IDOR) vulnerability in eyecomms eyeCMS through 2019-10-15 allows any candidate to change other candidates' personal information (first name, last name, email, CV, phone number, and all other personal information) by changing the value of the…

  • CVE-2019-16723MedSep 23, 2019
    risk 0.28cvss 4.3epss 0.01

    In Cacti through 1.2.6, authenticated users may bypass authorization checks (for viewing a graph) via a direct graph_json.php request with a modified local_graph_id parameter.

  • CVE-2019-14725MedSep 11, 2019
    risk 0.28cvss 4.3epss 0.01

    In CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.851, an insecure object reference allows an attacker to change the e-mail usage value of a victim account via an attacker account.

  • CVE-2019-7864MedAug 2, 2019
    risk 0.28cvss 5.3epss 0.01

    An insecure direct object reference (IDOR) vulnerability exists in the RSS feeds of Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. This can lead to unauthorized access to order details.

  • CVE-2018-19582MedJul 10, 2019
    risk 0.28cvss 4.3epss 0.01

    GitLab EE, versions 11.4 before 11.4.8 and 11.5 before 11.5.1, is affected by an insecure direct object reference vulnerability that permits an unauthorized user to publish the draft merge request comments of another user.

  • CVE-2018-19575MedJul 10, 2019
    risk 0.28cvss 4.3epss 0.01

    GitLab CE/EE, versions 10.1 up to 11.x before 11.3.11, 11.4 before 11.4.8, and 11.5 before 11.5.1, are vulnerable to an insecure direct object reference issue that allows a user to make comments on a locked issue.

  • CVE-2018-16971MedSep 12, 2018
    risk 0.28cvss 4.3epss 0.01

    Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to access non-purchased course contents (quiz / test) via a modified id parameter.

  • CVE-2018-16704MedSep 7, 2018
    risk 0.28cvss 4.3epss 0.01

    An issue was discovered in Gleez CMS v1.2.0. Because of an Insecure Direct Object Reference vulnerability, it is possible for attackers (logged in users) to view profile page of other users, as demonstrated by navigating to user/3 on demo.gleezcms.org.

  • CVE-2018-15833MedAug 26, 2018
    risk 0.28cvss 4.3epss 0.01

    In Vanilla before 2.6.1, the polling functionality allows Insecure Direct Object Reference (IDOR) via the Poll ID, leading to the ability of a single user to select multiple Poll Options (e.g., vote for multiple items).

  • CVE-2017-0920MedMar 22, 2018
    risk 0.28cvss 4.3epss 0.01

    GitLab Community and Enterprise Editions before 10.1.6, 10.2.6, and 10.3.4 are vulnerable to an authorization bypass issue in the Projects::MergeRequests::CreationsController component resulting in an attacker to see every project name and their respective namespace on a GitLab…

  • CVE-2017-15211MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can add an external link to a private project of another user.

  • CVE-2017-15209MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can remove attachments from a private project of another user.

  • CVE-2017-15208MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can remove automatic actions from a private project of another user.

  • CVE-2017-15207MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit tasks of a private project of another user.

  • CVE-2017-15206MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can add an internal link to a private project of another user.

  • CVE-2017-15204MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can add automatic actions to a private project of another user.

  • CVE-2017-15203MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can remove categories from a private project of another user.

  • CVE-2017-15202MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit columns of a private project of another user.

  • CVE-2017-15201MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can edit tags of a private project of another user.

  • CVE-2017-15200MedOct 11, 2017
    risk 0.28cvss 4.3epss 0.01

    In Kanboard before 1.0.47, by altering form data, an authenticated user can add a new task to a private project of another user.