VYPR

CWE-862

Missing Authorization

ClassIncompleteLikelihood: High

Description

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.

Hierarchy (View 1000)

Related attack patterns (CAPEC)

CAPEC-665

CVEs mapped to this weakness (9,259)

page 10 of 463
  • CVE-2023-1782CriApr 5, 2023
    risk 0.64cvss 9.9epss 0.01

    HashiCorp Nomad and Nomad Enterprise versions 1.5.0 up to 1.5.2 allow unauthenticated users to bypass intended ACL authorizations for clusters where mTLS is not enabled. This issue is fixed in version 1.5.3.

  • CVE-2022-4939CriApr 5, 2023
    risk 0.64cvss 9.8epss 0.02

    THe WCFM Membership plugin for WordPress is vulnerable to privilege escalation in versions up to, and including 2.10.0, due to a missing capability check on the wp_ajax_nopriv_wcfm_ajax_controller AJAX action that controls membership settings. This makes it possible for…

  • CVE-2022-48367CriMar 12, 2023
    risk 0.64cvss 9.8epss 0.01

    An issue was discovered in eZ Publish Ibexa Kernel before 7.5.28. Access control based on object state is mishandled.

  • CVE-2023-1114CriMar 1, 2023
    risk 0.64cvss 9.8epss 0.01

    Missing Authorization vulnerability in Eskom e-Belediye allows Information Elicitation. This issue affects e-Belediye: from 1.0.0.95 before 1.0.0.100.

  • CVE-2021-31577CriFeb 6, 2023
    risk 0.64cvss 9.8epss 0.01

    In Boa, there is a possible escalation of privilege due to a missing permission check. This could lead to remote escalation of privilege from a proximal attacker with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20210008;…

  • CVE-2023-0556CriJan 27, 2023
    risk 0.64cvss 9.8epss 0.01

    The ContentStudio plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on several functions in versions up to, and including, 1.2.5. This makes it possible for unauthenticated attackers to obtain the blog metadata (via the function…

  • CVE-2022-4223HigDec 13, 2022
    risk 0.64cvss 8.8epss 0.80

    The pgAdmin server includes an HTTP API that is intended to be used to validate the path a user selects to external PostgreSQL utilities such as pg_dump and pg_restore. The utility is executed by the server to determine what PostgreSQL version it is from. Versions of pgAdmin…

  • CVE-2022-41272CriDec 13, 2022
    risk 0.64cvss 9.9epss 0.01

    An unauthenticated attacker over the network can attach to an open interface exposed through JNDI by the User Defined Search (UDS) of SAP NetWeaver Process Integration (PI) - version 7.50 and make use of an open naming and directory API to access services which can be used to…

  • CVE-2022-41326CriNov 22, 2022
    risk 0.64cvss 9.8epss 0.01

    The web conferencing component of Mitel MiCollab through 9.6.0.13 could allow an unauthenticated attacker to upload arbitrary scripts due to improper authorization controls. A successful exploit could allow remote code execution within the context of the application.

  • CVE-2022-38651CriNov 12, 2022
    risk 0.64cvss 9.8epss 0.01

    A security filter misconfiguration exists in VMware Hyperic Server 5.8.6. Exploitation of this vulnerability enables a malicious party to bypass some authentication requirements when issuing requests to Hyperic Server. NOTE: This vulnerability only affects products that are no…

  • CVE-2022-41238CriSep 21, 2022
    risk 0.64cvss 9.8epss 0.01

    A missing permission check in Jenkins DotCi Plugin 2.40.00 and earlier allows unauthenticated attackers to trigger builds of jobs corresponding to the attacker-specified repository for attacker-specified commits.

  • CVE-2022-36642CriSep 2, 2022
    risk 0.64cvss 9.8epss 0.10

    A local file disclosure vulnerability in /appConfig/userDB.json of Telos Alliance Omnia MPX Node through 1.0.0-1.4.9 allows attackers to access users credentials which makes him able to gain initial access to the control panel with high privilege because the cleartext storage of…

  • CVE-2022-0885CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.09

    The Member Hero WordPress plugin through 1.0.9 lacks authorization checks, and does not validate the a request parameter in an AJAX action, allowing unauthenticated users to call arbitrary PHP functions with no arguments.

  • CVE-2022-28993CriMay 20, 2022
    risk 0.64cvss 9.8epss 0.02

    Multi Store Inventory Management System v1.0 allows attackers to perform an account takeover via a crafted POST request.

  • CVE-2022-29176CriMay 5, 2022
    risk 0.64cvss 9.9epss 0.02

    Rubygems is a package registry used to supply software for the Ruby language ecosystem. Due to a bug in the yank action, it was possible for any RubyGems.org user to remove and replace certain gems even if that user was not authorized to do so. To be vulnerable, a gem needed:…

  • CVE-2022-29906CriApr 29, 2022
    risk 0.64cvss 9.8epss 0.01

    The admin API module in the QuizGame extension for MediaWiki through 1.37.2 (before 665e33a68f6fa1167df99c0aa18ed0157cdf9f66) omits a check for the quizadmin user.

  • CVE-2021-25032CriJan 10, 2022
    risk 0.64cvss 9.8epss 0.07

    The PublishPress Capabilities WordPress plugin before 2.3.1, PublishPress Capabilities Pro WordPress plugin before 2.3.1 does not have authorisation and CSRF checks when updating the plugin's settings via the init hook, and does not ensure that the options to be updated belong…

  • CVE-2021-33924CriSep 29, 2021
    risk 0.64cvss 9.8epss 0.02

    Confluent Ansible (cp-ansible) version 5.5.0, 5.5.1, 5.5.2 and 6.0.0 is vulnerable to Incorrect Access Control via its auxiliary component that allows remote attackers to access sensitive information.

  • CVE-2021-37270CriSep 27, 2021
    risk 0.64cvss 9.8epss 0.01

    There is an unauthorized access vulnerability in the CMS Enterprise Website Construction System 5.0. Attackers can use this vulnerability to directly access the specified background path without logging in to the background to obtain the background administrator authority.

  • CVE-2021-37535CriSep 14, 2021
    risk 0.64cvss 9.8epss 0.01

    SAP NetWeaver Application Server Java (JMS Connector Service) - versions 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not perform necessary authorization checks for user privileges.